Commit 6211aad
Q2 Release (#460)
* GraphQL Introspection Enabled - P5
#450
* Bypass of Password Confirmation on Password Change
Add:
Broken Access Control – Bypass of Password Confirmation – Change Password
* Revert "Bypass of Password Confirmation on Password Change"
This reverts commit a6e415a.
* Bypass of Password Confirmation on Password Change
Add:
Broken Access Control – Bypass of Password Confirmation – Change Password
* Revert "Bypass of Password Confirmation on Password Change"
This reverts commit 3418212.
* Broken Access Control (BAC) - Bypass of Password Confirmation - Change Password (#462)
* Revert "Bypass of Password Confirmation on Password Change"
This reverts commit 3418212.
* Bypass of Password Confirmation on Password Change
Add:
Broken Access Control – Bypass of Password Confirmation – Change Password
* AI entries revised (#464)
* AI entries revised
Adding:
P1 - AI Application Security - Training Data Poisoning - Backdoor Injection / Bias Manipulation
P1 - AI Application Security - Model Extraction - API Query-Based Model Reconstruction
P1 - AI Application Security - Sensitive Information Disclosure - Cross-Tenant PII Leakage/Exposure
P1 - AI Application Security - Remote Code Execution - Full System Compromise
P1 - AI Application Security - Sensitive Information Disclosure - Key Leak
P2 - AI Application Security - Remote Code Execution - Sandboxed Container Code Execution
P2 - AI Application Security - Prompt Injection - System Prompt Leakage
P2 - AI Application Security - Vector and Embedding Weaknesses - Embedding Exfiltration / Model Extraction
P2 - AI Application Security - Denial-of-Service (DoS) - Application-Wide
P3 - AI Application Security - Vector and Embedding Weaknesses - Semantic Indexing
P3 - AI Application Security - Improper Output Handling - Cross-Site Scripting (XSS)
P4 - AI Application Security - Improper Output Handling - Markdown/HTML Injection
P4 - AI Application Security - AI Safety - Misinformation / Wrong Factual Data
P4 - AI Application Security - Insufficient Rate Limiting - Query Flooding / API Token Abuse
P4 - AI Application Security - Denial-of-Service (DoS) - Tenant-Scoped
P4 - AI Application Security - Adversarial Example Injection - AI Misclassification Attacks
P5 - AI Application Security - Improper Input Handling - ANSI Escape Codes
P5 - AI Application Security - Improper Input Handling - Unicode Confusables
P5 - AI Application Security - Improper Input Handling - RTL Overrides
* Update vulnerability-rating-taxonomy.json
* Fixing errors
* Fixing errors2
* Update vulnerability-rating-taxonomy.json
* Update vulnerability-rating-taxonomy.json
* Update vulnerability-rating-taxonomy.json
* Update vulnerability-rating-taxonomy.json
* Update vulnerability-rating-taxonomy.json
* Update cvss_v3.json
* Fixed deprecated node mapping (#457)
* Updated varies to default and removed redundant entries (#461)
* Updated varies to default and removed redundant entries
* Reverting some changes
---------
Co-authored-by: Abhinav Nain <[email protected]>
* Final Changes - Adding Changelog + deprecated-node-mappings + ALL JSON Sorting + SCW
---------
Co-authored-by: SamAtBugcrowd <[email protected]>
Co-authored-by: Abhinav Nain <[email protected]>1 parent 6f8e8d6 commit 6211aad
File tree
7 files changed
+813
-690
lines changed- mappings
- cvss_v3
- cwe
- remediation_advice
- third-party-mappings/remediation_training
7 files changed
+813
-690
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
12 | 12 | | |
13 | 13 | | |
14 | 14 | | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
15 | 53 | | |
16 | 54 | | |
17 | 55 | | |
| |||
0 commit comments