Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

wip hot fix #401

Merged
merged 1 commit into from
Jan 22, 2024

wip hot fix

a4c844c
Select commit
Loading
Failed to load commit list.
Merged

wip hot fix #401

wip hot fix
a4c844c
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / CodeQL failed Jan 22, 2024 in 6s

4 new alerts including 4 high severity security vulnerabilities

New alerts in code changed by this pull request

Security Alerts:

  • 4 high

See annotations below for details.

View all branch alerts.

Annotations

Check failure on line 1187 in routes/profile.routes.js

See this annotation in the file changed.

Code scanning / CodeQL

Missing rate limiting High

This route handler performs
authorization
, but is not rate-limited.

Check failure on line 1242 in routes/profile.routes.js

See this annotation in the file changed.

Code scanning / CodeQL

Missing rate limiting High

This route handler performs
authorization
, but is not rate-limited.

Check failure on line 1184 in routes/profile.routes.js

See this annotation in the file changed.

Code scanning / CodeQL

Incomplete URL substring sanitization High

'
https://app.satt.com
' can be anywhere in the URL, and arbitrary hosts may come before or after it.

Check failure on line 1239 in routes/profile.routes.js

See this annotation in the file changed.

Code scanning / CodeQL

Incomplete URL substring sanitization High

'
https://app.satt.com
' can be anywhere in the URL, and arbitrary hosts may come before or after it.