You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The list below presents the 10 most relevant findings that need your attention. To view information on the remaining findings, navigate to the Mend Application.
mend-for-github-combot
changed the title
Code Security Report: 3 high severity findings, 16 total findings
Code Security Report: 11 high severity findings, 16 total findings
Mar 5, 2024
Code Security Report
Scan Metadata
Latest Scan: 2024-03-05 02:41am
Total Findings: 16 | New Findings: 16 | Resolved Findings: 16
Tested Project Files: 50
Detected Programming Languages: 1 (JavaScript / TypeScript*)
Most Relevant Findings
CWE-94
contributions.js:33
Vulnerable Code
NodeGoat/app/routes/contributions.js
Lines 28 to 33 in b6cc315
1 Data Flow/s detected
NodeGoat/app/routes/index.js
Line 54 in b6cc315
NodeGoat/app/routes/contributions.js
Line 28 in b6cc315
NodeGoat/app/routes/contributions.js
Line 33 in b6cc315
CWE-94
contributions.js:32
Vulnerable Code
NodeGoat/app/routes/contributions.js
Lines 27 to 32 in b6cc315
1 Data Flow/s detected
NodeGoat/app/routes/index.js
Line 54 in b6cc315
NodeGoat/app/routes/contributions.js
Line 28 in b6cc315
NodeGoat/app/routes/contributions.js
Line 32 in b6cc315
CWE-94
error.js:10
Vulnerable Code
NodeGoat/app/routes/error.js
Lines 5 to 10 in b6cc315
1 Data Flow/s detected
NodeGoat/app/routes/index.js
Line 97 in b6cc315
NodeGoat/app/routes/error.js
Line 3 in b6cc315
NodeGoat/app/routes/error.js
Line 11 in b6cc315
NodeGoat/app/routes/error.js
Line 10 in b6cc315
CWE-94
profile.js:65
Vulnerable Code
NodeGoat/app/routes/profile.js
Lines 60 to 65 in b6cc315
7 Data Flow/s detected
View Data Flow 1
NodeGoat/app/routes/index.js
Line 50 in b6cc315
NodeGoat/app/routes/profile.js
Line 40 in b6cc315
NodeGoat/app/routes/profile.js
Line 45 in b6cc315
NodeGoat/app/routes/profile.js
Line 69 in b6cc315
NodeGoat/app/routes/profile.js
Line 65 in b6cc315
View Data Flow 2
NodeGoat/app/routes/index.js
Line 50 in b6cc315
NodeGoat/app/routes/profile.js
Line 40 in b6cc315
NodeGoat/app/routes/profile.js
Line 44 in b6cc315
NodeGoat/app/routes/profile.js
Line 68 in b6cc315
NodeGoat/app/routes/profile.js
Line 65 in b6cc315
View Data Flow 3
NodeGoat/app/routes/index.js
Line 50 in b6cc315
NodeGoat/app/routes/profile.js
Line 40 in b6cc315
NodeGoat/app/routes/profile.js
Line 46 in b6cc315
NodeGoat/app/routes/profile.js
Line 70 in b6cc315
NodeGoat/app/routes/profile.js
Line 65 in b6cc315
View more Data Flows
CWE-94
contributions.js:34
Vulnerable Code
NodeGoat/app/routes/contributions.js
Lines 29 to 34 in b6cc315
1 Data Flow/s detected
NodeGoat/app/routes/index.js
Line 54 in b6cc315
NodeGoat/app/routes/contributions.js
Line 28 in b6cc315
NodeGoat/app/routes/contributions.js
Line 34 in b6cc315
CWE-22
index.js:88
Vulnerable Code
NodeGoat/app/routes/index.js
Lines 83 to 88 in b6cc315
1 Data Flow/s detected
NodeGoat/app/routes/index.js
Line 84 in b6cc315
NodeGoat/app/routes/index.js
Line 86 in b6cc315
NodeGoat/app/routes/index.js
Line 88 in b6cc315
CWE-943
user-dao.js:91
Vulnerable Code
NodeGoat/app/data/user-dao.js
Lines 86 to 91 in b6cc315
1 Data Flow/s detected
NodeGoat/app/routes/index.js
Line 36 in b6cc315
NodeGoat/app/routes/session.js
Line 51 in b6cc315
NodeGoat/app/routes/session.js
Line 53 in b6cc315
NodeGoat/app/routes/session.js
Line 56 in b6cc315
NodeGoat/app/data/user-dao.js
Line 57 in b6cc315
NodeGoat/app/data/user-dao.js
Line 92 in b6cc315
NodeGoat/app/data/user-dao.js
Line 91 in b6cc315
CWE-943
memos-dao.js:23
Vulnerable Code
NodeGoat/app/data/memos-dao.js
Lines 18 to 23 in b6cc315
1 Data Flow/s detected
NodeGoat/app/routes/index.js
Line 69 in b6cc315
NodeGoat/app/routes/memos.js
Line 11 in b6cc315
NodeGoat/app/routes/memos.js
Line 13 in b6cc315
NodeGoat/app/data/memos-dao.js
Line 15 in b6cc315
NodeGoat/app/data/memos-dao.js
Line 19 in b6cc315
NodeGoat/app/data/memos-dao.js
Line 23 in b6cc315
CWE-918
research.js:16
Vulnerable Code
NodeGoat/app/routes/research.js
Lines 11 to 16 in b6cc315
1 Data Flow/s detected
NodeGoat/app/routes/index.js
Line 94 in b6cc315
NodeGoat/app/routes/research.js
Line 12 in b6cc315
NodeGoat/app/routes/research.js
Line 15 in b6cc315
NodeGoat/app/routes/research.js
Line 16 in b6cc315
CWE-943
user-dao.js:104
Vulnerable Code
NodeGoat/app/data/user-dao.js
Lines 99 to 104 in b6cc315
1 Data Flow/s detected
NodeGoat/app/routes/index.js
Line 40 in b6cc315
NodeGoat/app/routes/session.js
Line 183 in b6cc315
NodeGoat/app/routes/session.js
Line 187 in b6cc315
NodeGoat/app/routes/session.js
Line 200 in b6cc315
NodeGoat/app/routes/session.js
Line 132 in b6cc315
NodeGoat/app/routes/session.js
Line 200 in b6cc315
NodeGoat/app/routes/session.js
Line 202 in b6cc315
NodeGoat/app/data/user-dao.js
Line 103 in b6cc315
NodeGoat/app/data/user-dao.js
Line 105 in b6cc315
NodeGoat/app/data/user-dao.js
Line 104 in b6cc315
Findings Overview
The text was updated successfully, but these errors were encountered: