-
Notifications
You must be signed in to change notification settings - Fork 0
Description
Code Security Report
Scan Metadata
Latest Scan: 2023-07-11 12:12pm
Total Findings: 937 | New Findings: 0 | Resolved Findings: 0
Tested Project Files: 588
Detected Programming Languages: 3 (JavaScript / Node.js, Android Java, C/C++ (Beta))
- Check this box to manually trigger a scan
Most Relevant Findings
The below list presents the 10 most relevant findings that need your attention. To view information on the remaining findings, navigate to the Mend SAST Application.
| Severity | Vulnerability Type | CWE | File | Data Flows | Date | ||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| External Data In SQL Queries | 1 | 2023-06-26 03:15pm | |||||||||||||||||
More infoLines 57 to 62 in cc1ee60
1 Data Flow/s detectedView Data Flow 1Line 62 in cc1ee60
| |||||||||||||||||||
| External Data In SQL Queries | 1 | 2023-06-26 03:15pm | |||||||||||||||||
More infoLines 57 to 62 in cc1ee60
1 Data Flow/s detectedView Data Flow 1Line 62 in cc1ee60
| |||||||||||||||||||
| External Data In SQL Queries | 1 | 2023-06-26 03:15pm | |||||||||||||||||
More infoLines 57 to 62 in cc1ee60
1 Data Flow/s detectedView Data Flow 1Line 62 in cc1ee60
| |||||||||||||||||||
| External Data In SQL Queries | 1 | 2023-06-26 03:15pm | |||||||||||||||||
More infoLines 78 to 83 in cc1ee60
1 Data Flow/s detectedView Data Flow 1Line 83 in cc1ee60
| |||||||||||||||||||
| External Data In SQL Queries | 1 | 2023-06-26 03:15pm | |||||||||||||||||
More infoLines 84 to 89 in cc1ee60
1 Data Flow/s detectedView Data Flow 1Line 89 in cc1ee60
| |||||||||||||||||||
| External Data In SQL Queries | 1 | 2023-06-26 03:15pm | |||||||||||||||||
More infoLines 90 to 95 in cc1ee60
1 Data Flow/s detectedView Data Flow 1Line 95 in cc1ee60
| |||||||||||||||||||
| External Data In SQL Queries | 1 | 2023-06-26 03:15pm | |||||||||||||||||
More infoLines 181 to 186 in cc1ee60
1 Data Flow/s detectedView Data Flow 1Line 186 in cc1ee60
| |||||||||||||||||||
| External Data In SQL Queries | 1 | 2023-06-26 03:15pm | |||||||||||||||||
More infoLines 215 to 220 in cc1ee60
1 Data Flow/s detectedView Data Flow 1Line 220 in cc1ee60
| |||||||||||||||||||
| External Data In SQL Queries | 1 | 2023-06-26 03:15pm | |||||||||||||||||
More infoLines 47 to 52 in cc1ee60
1 Data Flow/s detectedView Data Flow 1Line 52 in cc1ee60
| |||||||||||||||||||
| External Data In SQL Queries | 1 | 2023-06-26 03:15pm | |||||||||||||||||
More infoLines 47 to 52 in cc1ee60
1 Data Flow/s detectedView Data Flow 1Line 52 in cc1ee60
| |||||||||||||||||||
Findings Overview
| Severity | Vulnerability Type | CWE | Language | Count |
|---|---|---|---|---|
| External Data In SQL Queries | CWE-89 | Android Java | 15 | |
| DOM Based Cross-Site Scripting | CWE-79 | JavaScript / Node.js | 3 | |
| Arbitrary Code Injection | CWE-94 | Android Java | 4 | |
| Miscellaneous Dangerous Functions | CWE-676 | Android Java | 409 | |
| Log Messages | CWE-209 | Android Java | 64 | |
| Heap Inspection | CWE-244 | Android Java | 145 | |
| Hardcoded Password/Credentials | CWE-798 | Android Java | 11 | |
| Location Information | CWE-200 | Android Java | 2 | |
| Intents Usage | CWE-926 | Android Java | 102 | |
| Shared Preferences Usage | CWE-200 | Android Java | 3 | |
| Insecure Data Storage | CWE-200 | Android Java | 8 | |
| Insufficient Transport Layer Protection | CWE-319 | Android Java | 106 | |
| External URL Access | Android Java | 16 | ||
| Log Forging | CWE-117 | JavaScript / Node.js | 2 | |
| Weak Encryption Strength | CWE-326 | Android Java | 23 | |
| Application Configuration | CWE-16 | Android Java | 24 |