satyamchaurasiapersistent / JavaVulnerableLab

lab
0 stars 0 forks source link

CX Exposure_of_System_Data @ src/main/java/org/cysecurity/cspf/jvl/controller/xxe.java [master] #80

Closed satyamchaurasiapersistent closed 2 years ago

satyamchaurasiapersistent commented 2 years ago

Exposure_of_System_Data issue exists @ src/main/java/org/cysecurity/cspf/jvl/controller/xxe.java in branch master

The system data read by processRequest in the file src\main\java\org\cysecurity\cspf\jvl\controller\xxe.java at line 41 is potentially exposed by processRequest found in src\main\java\org\cysecurity\cspf\jvl\controller\xxe.java at line 55.

Severity: Low

CWE:497

Vulnerability details and guidance

Checkmarx

Training Recommended Fix

Lines: 41


Code (Line #41):

        PrintWriter out = response.getWriter();

satyamchaurasiapersistent commented 2 years ago

Issue still exists.

satyamchaurasiapersistent commented 2 years ago

Issue still exists.

satyamchaurasiapersistent commented 2 years ago

Issue still exists.

satyamchaurasiapersistent commented 2 years ago

Issue still exists.