github / securitylab

Resources related to GitHub Security Lab
https://securitylab.github.com
MIT License
1.39k stars 243 forks source link

Security Vulnerability : Outdated Copyright #421

Closed jaimaakali closed 3 years ago

jaimaakali commented 3 years ago

Outdated Copyright Message @ https://github.com/github/securitylab/blob/main/LICENSE.md

POC : Description : Outdated Copyright is present @ :https://github.com/github/securitylab/blob/main/LICENSE.md this url which is of years "2019”

Impacted Security Property : Integrity

ASVS Categories : Architecture , Design and Threat Modeling

Suggested Remediation : Year mentioned in the copyright should be updated to the current one and at present it is 2021

jaimaakali commented 3 years ago

My profile at HackerOne is @171217

Url is https://hackerone.com/171217 this

JarLob commented 3 years ago

Thank you for your submission!

According to the bounty rules you need to reference at least 4 (four) CVEs you were able to find with a CodeQL query (authored by you) for this vulnerability pattern. I'm closing the issue, but feel free to reopen it once you have a CodeQL and the CVEs ready.

Best regards and happy hacking!

ghsecuritylab commented 3 years ago

Your submission is now in status Closed.

For information, the evaluation workflow is the following: SecLab review > Generate Query Results > FP Check > CodeQL review > SecLab finalize > Pay > Closed