OWASP / wstg

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
https://owasp.org/www-project-web-security-testing-guide/
Creative Commons Attribution Share Alike 4.0 International
7.26k stars 1.32k forks source link

Adding Test Path Confusion #1013

Closed cyspad closed 1 year ago

cyspad commented 1 year ago

This PR closes #1011 .

What did this PR accomplish?

github-actions[bot] commented 1 year ago

The following issues were identified: document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:7 MD012/no-multiple-blanks Multiple consecutive blank lines [Expected: 1; Actual: 2] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:10:121 MD010/no-hard-tabs Hard tabs [Column: 121] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:18 MD012/no-multiple-blanks Multiple consecutive blank lines [Expected: 1; Actual: 2] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:32:1 MD007/ul-indent Unordered list indentation [Expected: 0; Actual: 1] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:33:1 MD007/ul-indent Unordered list indentation [Expected: 0; Actual: 1] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:35 MD012/no-multiple-blanks Multiple consecutive blank lines [Expected: 1; Actual: 2] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:38:110 MD034/no-bare-urls Bare URL used [Context: "https://www.example.com/my_pro..."] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:40:71 MD034/no-bare-urls Bare URL used [Context: "https://www.example.com/my_pro..."] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:44:59 MD034/no-bare-urls Bare URL used [Context: "https://www.example.com/my_pro..."] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:48:1 MD007/ul-indent Unordered list indentation [Expected: 0; Actual: 1] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:48:9 MD034/no-bare-urls Bare URL used [Context: "https://www.example.com/my_pro..."] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:48:82 MD034/no-bare-urls Bare URL used [Context: "https://www.example.com/my_pro..."] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:50:1 MD007/ul-indent Unordered list indentation [Expected: 0; Actual: 1] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:52:1 MD007/ul-indent Unordered list indentation [Expected: 0; Actual: 1] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:54 MD012/no-multiple-blanks Multiple consecutive blank lines [Expected: 1; Actual: 2] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:57:1 MD034/no-bare-urls Bare URL used [Context: "https://beaglesecurity.com/blo..."] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:59 MD012/no-multiple-blanks Multiple consecutive blank lines [Expected: 1; Actual: 2] document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md:64 MD012/no-multiple-blanks Multiple consecutive blank lines [Expected: 1; Actual: 2]

github-actions[bot] commented 1 year ago

The following mistakes were identified:

/home/runner/work/wstg/wstg/document/4-Web_Application_Security_Testing/02-Configuration_and_Deployment_Management_Testing/13-Test_for_Path_Confusion.md 33:151 ✖ Incorrect usage of the term: “regex”, use “regular expression” instead terminology

github-actions[bot] commented 1 year ago

The following links are broken: FILE:document/4-Web_Application_Security_Testing/04-Authentication_Testing/Testing_For_Web_Cache_Deception.md [✖] https://www.example.com/my_profile → Status: 0 [✖] https://www.example.com/my_profile/test.css → Status: 0

github-actions[bot] commented 1 year ago

The following mistakes were identified:

/home/runner/work/wstg/wstg/document/4-Web_Application_Security_Testing/02-Configuration_and_Deployment_Management_Testing/13-Test_for_Path_Confusion.md 33:151 ✖ Incorrect usage of the term: “regex”, use “regular expression” instead terminology

kingthorin commented 1 year ago

The relevant indexes also need to be updated:

cyspad commented 1 year ago

Could you also add a Remediation section?

i cant add any Remediation if you can please help me

kingthorin commented 1 year ago

These should be good enough for now:

github-actions[bot] commented 1 year ago

The following issues were identified: document/4-Web_Application_Security_Testing/02-Configuration_and_Deployment_Management_Testing/13-Test_for_Path_Confusion.md:55:1 MD007/ul-indent Unordered list indentation [Expected: 0; Actual: 1] document/4-Web_Application_Security_Testing/02-Configuration_and_Deployment_Management_Testing/13-Test_for_Path_Confusion.md:56:1 MD007/ul-indent Unordered list indentation [Expected: 0; Actual: 1] document/4-Web_Application_Security_Testing/02-Configuration_and_Deployment_Management_Testing/13-Test_for_Path_Confusion.md:57:1 MD007/ul-indent Unordered list indentation [Expected: 0; Actual: 1] document/4-Web_Application_Security_Testing/02-Configuration_and_Deployment_Management_Testing/13-Test_for_Path_Confusion.md:59 MD012/no-multiple-blanks Multiple consecutive blank lines [Expected: 1; Actual: 2]

github-actions[bot] commented 1 year ago

The following issues were identified: document/4-Web_Application_Security_Testing/02-Configuration_and_Deployment_Management_Testing/13-Test_for_Path_Confusion.md:55:1 MD007/ul-indent Unordered list indentation [Expected: 0; Actual: 1] document/4-Web_Application_Security_Testing/02-Configuration_and_Deployment_Management_Testing/13-Test_for_Path_Confusion.md:56:1 MD007/ul-indent Unordered list indentation [Expected: 0; Actual: 1] document/4-Web_Application_Security_Testing/02-Configuration_and_Deployment_Management_Testing/13-Test_for_Path_Confusion.md:57:1 MD007/ul-indent Unordered list indentation [Expected: 0; Actual: 1]

cyspad commented 1 year ago

Dear @kingthorin Thank you for helping me

kingthorin commented 1 year ago

No problem, thanks for tackling that!

cyspad commented 1 year ago

I have a question Am I on the list of contributors now?