-
-
Notifications
You must be signed in to change notification settings - Fork 1.9k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Port 0.63.7 #4814
Merge remote-tracking branch 'upstream/master' into feature/port_0.63.7
d5c1bd1
Port 0.63.7 #4814
d5c1bd1
5 new alerts including 4 high severity security vulnerabilities
New alerts in code changed by this pull request
Security Alerts:
- 4 high
- 1 medium
See annotations below for details.
Annotations
Check warning on line 1540 in src/becca/entities/bnote.ts
Code scanning / CodeQL
Prototype-polluting assignment Medium
user controlled input
This assignment may alter Object.prototype if a malicious '__proto__' string is injected from
user controlled input
Check failure on line 87 in src/services/sql.ts
Code scanning / CodeQL
Database query built from user-controlled sources High
user-provided value
This query string depends on a
user-provided value
Check failure on line 515 in src/services/notes.ts
Code scanning / CodeQL
Polynomial regular expression used on uncontrolled data High
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
Check failure on line 530 in src/services/notes.ts
Code scanning / CodeQL
Polynomial regular expression used on uncontrolled data High
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
Check failure on line 616 in src/services/notes.ts
Code scanning / CodeQL
Polynomial regular expression used on uncontrolled data High
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This
regular expression
a user-provided value
This