| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
1 parent f93565d commit 379232b
35 files changed
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
@@ -1,2 +1,2 @@ | |||
| 1 | - mvn validate -Pscorecard -Dexec.args="expectedresults-1.2.csv results none anonymous" | ||
| 1 | + mvn validate -Pscorecard -Dexec.args="-cr anonymousScoringConfig.yaml" | ||
| 2 | 2 | ||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
@@ -1 +1,2 @@ | |||
| 1 | - call mvn validate -Pscorecard -Dexec.args="expectedresults-1.2.csv results" | ||
| 1 | + call mvn validate -Pscorecard | ||
| 2 | + | ||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
@@ -1,2 +1,2 @@ | |||
| 1 | - mvn validate -Pscorecard -Dexec.args="expectedresults-1.2.csv results" | ||
| 1 | + mvn validate -Pscorecard | ||
| 2 | 2 | ||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
@@ -884,7 +884,7 @@ | |||
| 884 | 884 | <dependency> | |
| 885 | 885 | <groupId>org.bouncycastle</groupId> | |
| 886 | 886 | <artifactId>bcprov-jdk15on</artifactId> | |
| 887 | - <version>1.68</version> | ||
| 887 | + <version>1.69</version> | ||
| 888 | 888 | </dependency> | |
| 889 | 889 | ||
| 890 | 890 | <!-- Kevin's fix for jar version conflicts. For future Benchmark 1.3 --> | |
@@ -1010,6 +1010,12 @@ | |||
| 1010 | 1010 | <version>${version.springframework}</version> | |
| 1011 | 1011 | </dependency> | |
| 1012 | 1012 | ||
| 1013 | + <dependency> | ||
| 1014 | + <groupId>org.yaml</groupId> | ||
| 1015 | + <artifactId>snakeyaml</artifactId> | ||
| 1016 | + <version>1.29</version> | ||
| 1017 | + </dependency> | ||
| 1018 | + | ||
| 1013 | 1019 | <dependency> | |
| 1014 | 1020 | <groupId>xml-apis</groupId> | |
| 1015 | 1021 | <artifactId>xml-apis</artifactId> | |
@@ -1381,7 +1387,7 @@ | |||
| 1381 | 1387 | <version.exec.maven>1.6.0</version.exec.maven> | |
| 1382 | 1388 | <version.hibernate>3.6.10.Final</version.hibernate> | |
| 1383 | 1389 | <version.jersey>1.19.4</version.jersey> | |
| 1384 | - <version.slf4j>1.7.30</version.slf4j> | ||
| 1390 | + <version.slf4j>1.7.31</version.slf4j> | ||
| 1385 | 1391 | <version.spotbugs.maven>4.2.3</version.spotbugs.maven> | |
| 1386 | 1392 | <version.spotbugs>4.2.3</version.spotbugs> | |
| 1387 | 1393 | <version.spotless>2.10.1</version.spotless> | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
@@ -1 +1,3 @@ | |||
| 1 | - call mvn clean package cargo:run -Pdeploy | ||
| 1 | + call mvn initialize | ||
| 2 | + call mvn clean package cargo:run -Pdeploy | ||
| 3 | + | ||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
@@ -1,9 +1,8 @@ | |||
| 1 | 1 | #!/bin/sh | |
| 2 | 2 | ||
| 3 | - chmod 755 src/main/resources/insecureCmd.sh | ||
| 4 | - | ||
| 5 | 3 | case "$1" in | |
| 6 | 4 | -q|--quiet) quiet="-D-Dorg.owasp.esapi.logSpecial.discard=true"; shift ;; | |
| 7 | 5 | *) quiet="" ;; | |
| 8 | 6 | esac | |
| 7 | + mvn ${quiet} initialize | ||
| 9 | 8 | mvn ${quiet} clean package cargo:run -Pdeploy | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
@@ -1,2 +1,3 @@ | |||
| 1 | 1 | #!/bin/sh | |
| 2 | 2 | mvn compile -Pcrawler | |
| 3 | + | ||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
@@ -1,4 +1,9 @@ | |||
| 1 | 1 | #!/bin/sh | |
| 2 | 2 | ||
| 3 | - chmod 755 src/main/resources/insecureCmd.sh | ||
| 4 | - mvn clean package cargo:run -Pdeploy -Drunenv=remote | ||
| 3 | + case "$1" in | ||
| 4 | + -q|--quiet) quiet="-D-Dorg.owasp.esapi.logSpecial.discard=true"; shift ;; | ||
| 5 | + *) quiet="" ;; | ||
| 6 | + esac | ||
| 7 | + mvn ${quiet} initialize | ||
| 8 | + mvn ${quiet} clean package cargo:run -Pdeploy -Drunenv=remote | ||
| 9 | + | ||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
@@ -89,7 +89,9 @@ private void load(File file) throws ParserConfigurationException, SAXException, | |||
| 89 | 89 | isInjection = | |
| 90 | 90 | Boolean.parseBoolean(isInjectionNodeList.item(0).getTextContent()); | |
| 91 | 91 | } | |
| 92 | - Category category = new Category(id, name, cwe, isInjection); | ||
| 92 | + String shortname = | ||
| 93 | + eElement.getElementsByTagName("shortname").item(0).getTextContent(); | ||
| 94 | + Category category = new Category(id, name, cwe, isInjection, shortname); | ||
| 93 | 95 | idToCategoryMap.put(id, category); | |
| 94 | 96 | nameToCategoryMap.put(name, category); | |
| 95 | 97 | } | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
@@ -19,13 +19,12 @@ | |||
| 19 | 19 | ||
| 20 | 20 | /** This class contains a single vulnerability category. */ | |
| 21 | 21 | public class Category { | |
| 22 | - private String id; | ||
| 23 | 22 | ||
| 24 | - private String name; | ||
| 25 | - | ||
| 26 | - private int cwe; | ||
| 27 | - | ||
| 28 | - private boolean isInjection; | ||
| 23 | + private final String id; // e.g., pathtraver | ||
| 24 | + private final String name; // e.g., Path Traversal | ||
| 25 | + private final int CWE; | ||
| 26 | + private final boolean isInjection; | ||
| 27 | + private final String shortName; // PATH | ||
| 29 | 28 | ||
| 30 | 29 | /** | |
| 31 | 30 | * Create a vuln category. | |
@@ -35,43 +34,32 @@ public class Category { | |||
| 35 | 34 | * @param cwe The associated CWE number. | |
| 36 | 35 | * @param isInjection Whether this vuln category is a type of injection attack. | |
| 37 | 36 | */ | |
| 38 | - public Category(String id, String name, int cwe, boolean isInjection) { | ||
| 37 | + public Category(String id, String name, int cwe, boolean isInjection, String shortname) { | ||
| 39 | 38 | this.id = id; | |
| 40 | 39 | this.name = name; | |
| 41 | - this.cwe = cwe; | ||
| 40 | + this.CWE = cwe; | ||
| 42 | 41 | this.isInjection = isInjection; | |
| 42 | + this.shortName = shortname; | ||
| 43 | 43 | } | |
| 44 | 44 | ||
| 45 | 45 | public String getId() { | |
| 46 | - return id; | ||
| 47 | - } | ||
| 48 | - | ||
| 49 | - public void setId(String id) { | ||
| 50 | - this.id = id; | ||
| 46 | + return this.id; | ||
| 51 | 47 | } | |
| 52 | 48 | ||
| 53 | 49 | public String getName() { | |
| 54 | - return name; | ||
| 50 | + return this.name; | ||
| 55 | 51 | } | |
| 56 | 52 | ||
| 57 | - public void setName(String name) { | ||
| 58 | - this.name = name; | ||
| 59 | - } | ||
| 60 | - | ||
| 61 | - public int getCwe() { | ||
| 62 | - return cwe; | ||
| 63 | - } | ||
| 64 | - | ||
| 65 | - public void setCwe(int cwe) { | ||
| 66 | - this.cwe = cwe; | ||
| 53 | + public int getCWE() { | ||
| 54 | + return this.CWE; | ||
| 67 | 55 | } | |
| 68 | 56 | ||
| 69 | 57 | public boolean isInjection() { | |
| 70 | - return isInjection; | ||
| 58 | + return this.isInjection; | ||
| 71 | 59 | } | |
| 72 | 60 | ||
| 73 | - public void setInjection(boolean isInjection) { | ||
| 74 | - this.isInjection = isInjection; | ||
| 61 | + public String getShortName() { | ||
| 62 | + return this.shortName; | ||
| 75 | 63 | } | |
| 76 | 64 | ||
| 77 | 65 | @Override | |
| Back | FazBrowse Home | New Git URL |
0 commit comments