Code Security Finding: Path/Directory Traversal (CWE-22, High Severity) in UnrestrictedExtensionUploadServlet.java:135 #74
Labels
Mend: code security findings
Code security findings detected by Mend
Code Security Finding
This finding was first detected on 2023-12-06 01:34pm GMT and is still present in the last scan performed on 2024-02-15 10:26pm GMT:
CWE-22
UnrestrictedExtensionUploadServlet.java:135
Vulnerable Code
easybuggy/src/main/java/org/t246osslab/easybuggy/vulnerabilities/UnrestrictedExtensionUploadServlet.java
Lines 130 to 135 in b9f2abf
1 Data Flow/s detected
Secure Code Warrior Training Material
● Training
▪ Secure Code Warrior Path/Directory Traversal Training
● Videos
▪ Secure Code Warrior Path/Directory Traversal Video
● Further Reading
▪ OWASP Path Traversal
▪ OWASP Input Validation Cheat Sheet
🏴 Suppress Finding
The text was updated successfully, but these errors were encountered: