NXTS-Developers / MOFHY-Lite

MOFHY Lite is a free web hosting management system to manage MOFH hosting accounts and SSL certificates.
https://getmofhy.eu.org
MIT License
20 stars 14 forks source link

MOFHY Lite isnt safe #98

Open 0944-tw opened 2 years ago

0944-tw commented 2 years ago

please check my fork https://github.com/ImLoadingUuU/MOFHY-Lite/security/code-scanning I scanned it using SonarCloud.it has a lot of security Problem

greenreader9 commented 2 years ago

That is not a public URL. Please paste the problems you found (And have verified) here.

0944-tw commented 2 years ago

K https://sonarcloud.io/summary/overall?id=ImLoadingUuU_MOFHY-Lite

greenreader9 commented 2 years ago

I 100% agree that the 44 vulnerabilities need to be fixed. The ones labeled "Bug" are just the program complaint about put-of-date (But still valid) HTML tags. They should be changed, but no rush. The ones labeled "Code Smell" just seem to be dev suggestions that can be ignored.

But those 44 vulnerabilities need to be fixed ASAP.

Direct link for @mahtab2003: https://sonarcloud.io/project/issues?resolved=false&types=VULNERABILITY&id=ImLoadingUuU_MOFHY-Lite

mahtab2003 commented 2 years ago

Ok let me fix

0944-tw commented 2 years ago

@mahtab2003 u can scan it yourself, its free but only for Open Source :>

mahtab2003 commented 2 years ago

Ok