Skip to content

Conversation

gacevedo
Copy link
Contributor

@gacevedo gacevedo commented Jun 25, 2024

Qwiet.AI AutoFix

This PR was created automatically by the Qwiet.AI autofix tool.
As long as it is open, subsequent scans and generated fixes to this same branch
will be added to it as new commits.

Each commit fixes one vulnerability.

Some manual intervention might be required before merging this PR.

Fixes

  • AutoPatch applied to src/Controllers/Order.js for finding 45 (Weak Cipher: Use of a Broken Cryptographic Algorithm in Order.js:decryptData) of project shiftleft-js-autofix-disabled

  • AutoPatch applied to src/Controllers/ImageLookup.js for finding 35 (Directory Traversal: HTTP Data as File Path via req in ImageLookup.js:get) of project shiftleft-js-autofix-disabled

  • AutoPatch applied to src/views.js for finding 42 (Remote Code Execution: Code Injection Through Attacker-controlled Data via req in views.js:<lambda>0.<lambda>3) of project shiftleft-js-autofix-disabled

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant