We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
This finding was first detected on 2023-12-06 01:34pm GMT and is still present in the last scan performed on 2024-02-15 10:26pm GMT:
CWE-22
MultiPartFileUtils.java:33
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Lines 28 to 33 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/XEEandXXEServlet.java
Line 141 in b9f2abf
Line 148 in b9f2abf
Line 56 in b9f2abf
Line 57 in b9f2abf
Line 59 in b9f2abf
Line 157 in b9f2abf
Line 28 in b9f2abf
Line 33 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/UnrestrictedSizeUploadServlet.java
Line 70 in b9f2abf
Line 71 in b9f2abf
Line 80 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/UnrestrictedExtensionUploadServlet.java
Line 69 in b9f2abf
Line 76 in b9f2abf
Line 81 in b9f2abf
● Training
▪ Secure Code Warrior Path/Directory Traversal Training
● Videos
▪ Secure Code Warrior Path/Directory Traversal Video
● Further Reading
▪ OWASP Path Traversal
▪ OWASP Input Validation Cheat Sheet
The text was updated successfully, but these errors were encountered:
No branches or pull requests
Code Security Finding
This finding was first detected on 2023-12-06 01:34pm GMT and is still present in the last scan performed on 2024-02-15 10:26pm GMT:
CWE-22
MultiPartFileUtils.java:33
Vulnerable Code
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Lines 28 to 33 in b9f2abf
3 Data Flow/s detected
View Data Flow 1
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/XEEandXXEServlet.java
Line 141 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/XEEandXXEServlet.java
Line 148 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 56 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/XEEandXXEServlet.java
Line 148 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/XEEandXXEServlet.java
Line 157 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 28 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 33 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 33 in b9f2abf
View Data Flow 2
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/UnrestrictedSizeUploadServlet.java
Line 70 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/UnrestrictedSizeUploadServlet.java
Line 71 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 56 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/UnrestrictedSizeUploadServlet.java
Line 71 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/UnrestrictedSizeUploadServlet.java
Line 80 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 28 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 33 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 33 in b9f2abf
View Data Flow 3
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/UnrestrictedExtensionUploadServlet.java
Line 69 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/UnrestrictedExtensionUploadServlet.java
Line 76 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 56 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 57 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 59 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/UnrestrictedExtensionUploadServlet.java
Line 76 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/UnrestrictedExtensionUploadServlet.java
Line 81 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 28 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 33 in b9f2abf
easybuggy/src/main/java/org/t246osslab/easybuggy/core/utils/MultiPartFileUtils.java
Line 33 in b9f2abf
Secure Code Warrior Training Material
● Training
▪ Secure Code Warrior Path/Directory Traversal Training
● Videos
▪ Secure Code Warrior Path/Directory Traversal Video
● Further Reading
▪ OWASP Path Traversal
▪ OWASP Input Validation Cheat Sheet
🏴 Suppress Finding
The text was updated successfully, but these errors were encountered: