Skip to content

Conversation

sgerlach
Copy link
Owner

No description provided.

Copy link

@stackhawk stackhawk bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🦅 HawkScan Completed

AAA_javaspringvulny | Development

Check Failed: "2 Findings >= High Found"

5 Findings:

2 High Finding(s) 15 Medium Finding(s) 0 Medium Finding(s)

Vulnerability Details

Cross Site Scripting (Reflected)

Severity High, Category Input Sanitization View in StackHawk

Found on 1 Path
paths:
- /search

SQL Injection

Severity High, Category Input Sanitization View in StackHawk

Found on 1 Path
paths:
- /search

Content Security Policy (CSP) Header Not Set

Severity Medium, Category Uncategorized View in StackHawk

Found on 13 Paths
paths:
- /payload/3099
- /basic-auth
- /jwt-auth
- /payload/3105
- /payload/3101
- /
- /search
- /payloads
- <root>
- /token-auth
- /payload/3097
- /search
- /payload/3103

Parameter Tampering

Severity Medium, Category Uncategorized View in StackHawk

Found on 1 Path
paths:
- /search

Spring Actuator Information Leak

Severity Medium, Category Uncategorized View in StackHawk

Found on 1 Path
paths:
- /actuator/health

Scan Metadata
duration: 2 min 9 sec 
date: Jun 14, 2023 at 3:46 PM UTC
scannedPaths: 33
hawkscanVersion: 3.1.0
host: http://localhost:9000
Scan IDs
applicationId: 44d63acb-a50b-4ab5-baa3-9508bb12691f
scanId: ee8c435e-b144-4eb6-a3ab-22e1edb901ce

View in StackHawk

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant