Skip to content

Readme updates#3

Open
sgerlach wants to merge 13 commits intomainfrom
readme-updates
Open

Readme updates#3
sgerlach wants to merge 13 commits intomainfrom
readme-updates

Conversation

@sgerlach
Copy link
Owner

testing

@sgerlach
Copy link
Owner Author

a comment

@sgerlach sgerlach marked this pull request as ready for review October 26, 2023 15:45
stackhawk[bot]

This comment was marked as outdated.

@sgerlach
Copy link
Owner Author

Another Comment

Copy link

@stackhawk stackhawk bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🦅 HawkScan Completed

deeperapidemo | custom-params

Check Failed: "5 Findings >= High Found"

4 Findings:

5 High Finding(s) 11 Medium Finding(s) 0 Medium Finding(s)

Vulnerability Details

SQL Injection

Severity High, Category Input Sanitization View in StackHawk

Found on 4 Paths
paths:
- /api/jwt/items/search/'
- /api/jwt/items/search/'
- /api/jwt/users/search/bad/'
- /api/jwt/items/search

ScottyCo Brewing Custom Tenant Check

Severity High, Category Uncategorized View in StackHawk

Found on 1 Path
paths:
- /api/jwt/users/search/bad/user

Parameter Tampering

Severity Medium, Category Uncategorized View in StackHawk

Found on 1 Path
paths:
- /api/jwt/items/search

Proxy Disclosure

Severity Medium, Category Information Leakage View in StackHawk

Found on 10 Paths
paths:
- /api/jwt/items/search
- /api/jwt/items/search/
- /api/basic
- /api/jwt/admin/freeHosen
- <root>
- /api
- /api/basic/items/search
- /api/basic/items/search/
- /api/jwt/auth/signin
- /api/basic/items

Scan Metadata
duration: 7 min 16 sec 
date: Oct 26, 2023 at 4:39 PM UTC
scannedPaths: 28
hawkscanVersion: 3.4.0
host: https://localhost:9000
Scan IDs
applicationId: 458599ed-6493-44c1-9b9d-73ba0eac5bc8
scanId: 2a8eb5f4-1c21-441f-8ade-1f4791c00a8c

View in StackHawk

@sgerlach sgerlach closed this May 13, 2024
@sgerlach sgerlach reopened this May 13, 2024
Copy link

@stackhawk stackhawk bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🦅 HawkScan Completed

deeperapidemo | custom-params

Check Failed: "4 Findings >= High Found"

5 Findings:

4 High Finding(s) 17 Medium Finding(s) 0 Medium Finding(s)

Vulnerability Details

SQL Injection

Severity High, Category Input Sanitization View in StackHawk

Found on 4 Paths
paths:
- /api/jwt/items/search
- /api/jwt/items/search/'
- /api/jwt/items/search/'
- /api/jwt/users/search/bad/'

Parameter Tampering

Severity Medium, Category Uncategorized View in StackHawk

Found on 1 Path
paths:
- /api/jwt/items/search

Possible Broken Object-Level Authorization (BOLA)

Severity Medium, Category Uncategorized View in StackHawk

Found on 1 Path
paths:
- /api/jwt/items/search

Possible Insecure Direct Object References (IDOR)

Severity Medium, Category Uncategorized View in StackHawk

Found on 5 Paths
paths:
- /api/basic/items/search/hosen
- /api/jwt/items/search/pants
- /api/jwt/users/search/bad/pants
- /api/jwt/users/search/hosen
- /api/token/items/search/hosen

Proxy Disclosure

Severity Medium, Category Information Leakage View in StackHawk

Found on 10 Paths
paths:
- /api/basic/items
- /api
- /api/basic
- /api/basic/items/search
- /api/jwt/admin/freeHosen
- /api/jwt/items/search
- /api/basic/items/search/
- /api/jwt/auth/signin
- /api/jwt/admin/freeHosen
- <root>

Scan Metadata
duration: 5 min 43 sec 
date: May 13, 2024 at 6:54 PM UTC
scannedPaths: 28
hawkscanVersion: 3.8.0
host: https://localhost:9000
Scan IDs
applicationId: 458599ed-6493-44c1-9b9d-73ba0eac5bc8
scanId: 046f8c43-1846-4c9c-acba-281bc50edb95

View in StackHawk

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant