issues
search
nccgroup
/
sobelow
Security-focused static analysis for the Phoenix Framework
Apache License 2.0
1.66k
stars
92
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Issue #168: trailing content on an `sobelow_ignore` line silently breaks parsing
#169
mikebveil
opened
3 weeks ago
0
Parser chokes on `sobelow_skip` comment with trailing content
#168
mikebveil
opened
3 weeks ago
0
Allow specifying a config file location
#167
kieraneglin
opened
3 months ago
0
ignore runtime config in hsts check
#166
btmo
closed
3 months ago
1
`--no-router` flag for use in non-Phoenix projects
#165
halostatue
opened
4 months ago
3
Sobelow does not detect when secrets are in the test env
#164
Adzz
opened
4 months ago
1
sobelow should have better default flags
#163
marcandre
opened
5 months ago
2
Enable https check in runtime
#162
alvarezloaiciga
closed
2 months ago
1
(ArgumentError) ranges (first..last) expect both sides to be integers, got: 1..1.0
#161
alvarezloaiciga
closed
5 months ago
7
sobelow does not analyse `sigil_H`
#160
marcandre
opened
5 months ago
1
sobelow should not accept `# sobelow_skip` that are not needed
#159
marcandre
opened
5 months ago
4
Pipeline error for sobelow
#158
MikaAK
opened
5 months ago
2
fix is_endpoint? error in main
#157
MikaAK
closed
5 months ago
0
Update GitHub workflow
#156
iarekk
closed
7 months ago
4
Update Sobelow.SQL.Query to test for both query() and query!(), similar to Sobelow.Traversal.FileModule (#153)
#155
iarekk
closed
7 months ago
0
Better granularity of SQL injection
#154
gpmcadam
opened
8 months ago
2
Misses vector if function contains bang operator (!)
#153
gpmcadam
closed
7 months ago
1
Update and fix warnings for new Elixir version
#152
houllette
closed
7 months ago
0
Added File.stream/.stream! to Traversal check
#151
jcowgar
closed
8 months ago
2
Actions debug
#150
realcorvus
closed
8 months ago
0
Include fingerprint in print and JSON format output
#149
sb8244
opened
9 months ago
2
Use trunc when idx is given as a float instead of an int
#148
realcorvus
closed
9 months ago
2
.sobelow-skips not picked up when running in (gitlab) CI.
#147
ottenkoop
opened
10 months ago
7
Normalization & Truncation Error Fixes
#146
houllette
closed
9 months ago
0
Source code with range traversal crashes sobelow
#145
doughsay
closed
9 months ago
6
version bump - 0.13.0
#144
houllette
closed
1 year ago
0
Upgrade to Elixir 1.15
#143
danschultzer
closed
1 year ago
1
(Protocol.UndefinedError) error
#142
krispetek
opened
1 year ago
8
Misc.BinToTerm with [:safe] option
#141
mhanberg
closed
1 year ago
2
Update README.md
#140
mushu8
opened
1 year ago
0
Creating Performance Testing Suite
#139
houllette
opened
1 year ago
0
--details / -d adjustment
#138
houllette
closed
1 year ago
0
Too much info in --details / -d output
#137
houllette
closed
1 year ago
2
Add findings guide
#136
realcorvus
closed
1 year ago
2
DevEx: consider defaulting to [FILE_PATH]:[LINE_NUMBER] format for default vulnerability output
#135
vanderhoop
opened
1 year ago
2
Remove CAStore
#134
houllette
closed
1 year ago
0
CAStore error when running as standalone script
#133
mbramson
closed
1 year ago
7
Adds Credo (and associated enhancements)
#132
houllette
closed
1 year ago
2
version bump - 0.12.1
#131
houllette
closed
1 year ago
0
CAStore vsn adjustment
#130
houllette
closed
1 year ago
0
castore vsn requirement
#129
houllette
closed
1 year ago
3
Pull release branch up to master
#128
houllette
closed
1 year ago
0
version bump - 0.12.0
#127
houllette
closed
1 year ago
0
Macro.to_string/2 Deprecation
#126
houllette
closed
1 year ago
0
LiveView Support
#125
houllette
opened
1 year ago
0
--version hotfix
#124
houllette
closed
1 year ago
0
Add support for HEEx to Sobelow.XSS.Raw
#123
realcorvus
closed
1 year ago
4
Add production runtime config to the missing HTTPS check
#122
LGuichet
opened
1 year ago
3
Improve installation instructions
#121
dmarcoux
closed
1 year ago
0
Suggestion for installation instructions
#120
dmarcoux
closed
1 year ago
1
Next