blockchain / blockchain-wallet-v4-frontend

Blockchain.com's open source, non-custodial Wallet
https://login.blockchain.com
GNU Affero General Public License v3.0
750 stars 506 forks source link

Master #6370

Closed Kings41 closed 2 months ago

Kings41 commented 2 months ago

Description (optional)

Add a concise explanation of the changes.

Testing Steps (optional)

Detail the steps required for the reviewer(s) to verify and test these changes.

sstephanou-bc commented 2 months ago

Logo Checkmarx One – Scan Summary & Detailsc7e6fd21-6d5a-4be4-829c-041d8c02cf14

New Issues

Severity Issue Source File / Package Checkmarx Insight
HIGH CVE-2022-0144 Npm-shelljs-0.8.4 Vulnerable Package
MEDIUM Cx41fbf2f3-5595 Npm-shelljs-0.8.4 Vulnerable Package
LOW Client_Hardcoded_Domain /legacy-pages/import-wallet.html: 31 Attack Vector
LOW Unsafe_Use_Of_Target_blank /packages/blockchain-wallet-v4-frontend/src/scenes/RecoverWallet/RecoveryOptions/index.tsx: 230 Attack Vector
LOW Unsafe_Use_Of_Target_blank /packages/blockchain-wallet-v4-frontend/src/layouts/Auth/components/Footer/Help/index.tsx: 18 Attack Vector
LOW Unsafe_Use_Of_Target_blank /packages/blockchain-wallet-v4-frontend/src/scenes/Settings/General/TermsOfService/index.tsx: 39 Attack Vector
LOW Unsafe_Use_Of_Target_blank /packages/blockchain-wallet-v4-frontend/src/scenes/Settings/General/PrivacyPolicy/index.tsx: 39 Attack Vector
LOW Unsafe_Use_Of_Target_blank /packages/blockchain-wallet-v4-frontend/src/scenes/Settings/General/About/index.tsx: 36 Attack Vector
LOW Unsafe_Use_Of_Target_blank /packages/blockchain-wallet-v4-frontend/src/layouts/Auth/components/Footer/Version/index.tsx: 20 Attack Vector
LOW Unsafe_Use_Of_Target_blank /packages/blockchain-wallet-v4-frontend/src/components/Terms/index.tsx: 94 Attack Vector
LOW Unsafe_Use_Of_Target_blank /packages/blockchain-wallet-v4-frontend/src/components/Terms/index.tsx: 77 Attack Vector
LOW Unsafe_Use_Of_Target_blank /packages/blockchain-wallet-v4-frontend/src/components/Terms/index.tsx: 45 Attack Vector
LOW Unsafe_Use_Of_Target_blank /packages/blockchain-wallet-v4-frontend/src/components/Terms/index.tsx: 32 Attack Vector