issues
search
OWASP
/
OFFAT
The OWASP OFFAT tool autonomously assesses your API for prevalent vulnerabilities, though full compatibility with OAS v3 is pending. The project remains a work in progress, continuously evolving towards completion.
http://owasp.org/OFFAT/
MIT License
407
stars
58
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Dev RELEASE: v0.19.0
#120
dmdhrumilmistry
closed
1 week ago
0
chore: Use pypi OIDC
#119
dmdhrumilmistry
closed
1 week ago
0
chore: Fix api
#118
dmdhrumilmistry
closed
1 week ago
0
Bump the pip group across 1 directory with 2 updates
#117
dependabot[bot]
closed
2 weeks ago
0
Support for HTTP/2
#116
henning410
opened
2 weeks ago
1
SSL Verify was not properly handled
#115
nrathaus
closed
3 weeks ago
0
Need to be able to skip SSL Verification
#114
mr-tomr
closed
1 week ago
3
Issue running the OFFAT tool to scan Open Source API's
#113
puriaayush01
closed
1 week ago
2
Bump requests from 2.31.0 to 2.32.0 in /src in the pip group across 1 directory
#112
dependabot[bot]
closed
1 month ago
0
New tests for `fill_params` and `BaseParser`
#111
nrathaus
closed
1 month ago
0
Dev RELEASE: v0.18.0
#110
dmdhrumilmistry
closed
1 month ago
0
Bump deps and project versions
#109
dmdhrumilmistry
closed
1 month ago
0
rename result to vulnerable
#108
dmdhrumilmistry
closed
1 month ago
0
Additional regexs
#107
nrathaus
closed
1 month ago
0
Add automated tests
#106
dmdhrumilmistry
opened
1 month ago
1
Additional tokens for `data_leak`
#105
nrathaus
closed
1 month ago
2
Fix empty matches
#104
nrathaus
closed
1 month ago
1
`PhoneNumberIN` returns empty values in the array
#103
nrathaus
closed
1 month ago
7
Make output more clear if the endpoint is or not vulnerable
#102
nrathaus
closed
1 month ago
5
96 false positive on ssti check
#101
dmdhrumilmistry
closed
1 month ago
0
False negative related to SQL Injection
#100
nrathaus
opened
1 month ago
2
Set the 'type' param so that future calls will know its type
#99
nrathaus
closed
1 month ago
3
Strange values instead of Payloads
#98
nrathaus
closed
1 month ago
2
False negative in OS Injection
#97
nrathaus
closed
1 month ago
1
False positive on SSTI check
#96
nrathaus
closed
1 month ago
6
Code reuse to reduce length and complexity
#95
nrathaus
closed
1 month ago
1
Dev RELEASE: v0.17.5
#94
dmdhrumilmistry
closed
1 month ago
0
FEATURE: Add Security Missing Auth checks
#93
dmdhrumilmistry
closed
1 month ago
0
Dev RELEASE: v0.17.4
#92
dmdhrumilmistry
closed
2 months ago
0
update dependencies for python 3.10
#91
dmdhrumilmistry
closed
2 months ago
0
remove unused base docker file
#90
dmdhrumilmistry
closed
2 months ago
0
'black', src/offat/tester/tester_utils.py wrong parameter
#89
nrathaus
closed
2 months ago
1
Installation fails on Ubuntu / venv
#88
nrathaus
closed
2 months ago
3
Dev RELEASE: v0.17.3
#87
dmdhrumilmistry
closed
2 months ago
0
Bump project version and deps
#86
dmdhrumilmistry
closed
2 months ago
0
Repetition fix and Tests Enhancements
#85
dmdhrumilmistry
closed
2 months ago
0
remove redundant data stored in results
#84
dmdhrumilmistry
closed
2 months ago
0
add ssti tests
#83
dmdhrumilmistry
closed
2 months ago
0
Install Error
#82
meetgyn
closed
2 months ago
2
Dev Release: v0.17.2 Publish Github Action
#81
dmdhrumilmistry
closed
2 months ago
0
create action.yml file
#80
dmdhrumilmistry
closed
2 months ago
0
Dev RELEASE: v0.17.1
#79
dmdhrumilmistry
closed
2 months ago
0
Bump deps and project version
#78
dmdhrumilmistry
closed
2 months ago
0
FEATURE: print small report summary
#77
dmdhrumilmistry
closed
2 months ago
0
update dockerfiles for fixing CVEs in container images
#76
dmdhrumilmistry
closed
2 months ago
0
Dev Release: v0.17.0
#75
dmdhrumilmistry
closed
2 months ago
0
feature: capability to set host and port and even basepath and bug fixes
#74
dmdhrumilmistry
closed
2 months ago
0
FEATURE: do not store errored requests into output file
#73
dmdhrumilmistry
closed
3 months ago
0
Feature : Output filter
#72
LasneF
closed
3 months ago
1
Feature : Documentation
#71
LasneF
closed
2 months ago
4
Next