endpointlabs / VulnerableDotNetCore3Project

.Net Core 3.0
0 stars 0 forks source link

CVE-2020-28469 (CWE-400) #12

Open mgulter opened 2 years ago

mgulter commented 2 years ago

A high severity vulnerability has been discovered in your project.

Project Name: BlackduckTestDiscrepancy_12

Scanner Name: blackduck

Cwe ID: 400

Cwe Name: Uncontrolled Resource Consumption (Resource Exhaustion)

Cwe Link: https://cwe.mitre.org/data/definitions/400.html

File: glob-parent

License: ISC License

Packages:

Training(Secure Code Warrior):

Tool Description: This affects the package glob-parent before 5.1.2. The enclosure regex used to check for strings ending in enclosure containing path separator.

Custom Description: NEW ENDPOINT TEST