pixee / ClassicWebGoat.NET

OWASP WebGoat.NET
0 stars 2 forks source link

✨ (Sonar) Fixed finding: "roslyn.sonaranalyzer.security.cs:S2631" #19

Closed pixeebot[bot] closed 1 week ago

pixeebot[bot] commented 1 week ago

✨✨✨

Remediation

This change fixes "roslyn.sonaranalyzer.security.cs:S2631" (id = roslyn.sonaranalyzer.security.cs:S2631) identified by Sonar.

Details

A malicious user may craft a DoS attack with a regular expression if unescaped.

I have additional improvements ready for this repo! If you want to see them, leave the comment:

@pixeebot next

... and I will open a new PR right away!

🧚🤖 Powered by Pixeebot Enhanced with AI Learn more

Feedback | Community | Docs | Codemod ID: sonar:dotnet/regex-injection

sonarcloud[bot] commented 1 week ago

Quality Gate Passed Quality Gate passed

Issues
0 New issues
0 Accepted issues

Measures
0 Security Hotspots
0.0% Coverage on New Code
0.0% Duplication on New Code

See analysis details on SonarCloud