Skip to content

Instantly share code, notes, and snippets.

@lstrihic
Created September 7, 2018 09:44
Show Gist options
  • Save lstrihic/79eb7c191fd756d9d2cc073503fe0d96 to your computer and use it in GitHub Desktop.
Save lstrihic/79eb7c191fd756d9d2cc073503fe0d96 to your computer and use it in GitHub Desktop.
{
"releaseName": "master",
"releaseCreatedDate": "2018-05-22T11:03:30.407",
"releaseId": 35836,
"vulnerabilities": {
"owasp2010": [{
"count": 1,
"value": "A4 - Insecure Direct Object References"
}, {
"count": 9,
"value": "A1 - Injection"
}, {
"count": 2,
"value": "A2 - Cross-Site Scripting"
}, {
"count": 1,
"value": "A9 - Insecure Cryptographic Storage"
}],
"owasp2014MobileTop10": [{
"count": 1,
"value": "M1 - Weak Server Side Controls"
}, {
"count": 9,
"value": "M8 - Security Decisions Via Untrusted Inputs"
}, {
"count": 3,
"value": "M5 - Poor Authorization and Authentication"
}, {
"count": 2,
"value": "M7 - Client Side Injection"
}, {
"count": 1,
"value": "M3 - Insufficient Transport Layer Protection"
}],
"owasp2013": [{
"count": 1,
"value": "A4 - Insecure Direct Object References"
}, {
"count": 1,
"value": "A6 - Sensitive Data Exposure"
}, {
"count": 3,
"value": "A7 - Missing Function Level Access Control"
}, {
"count": 9,
"value": "A1 - Injection"
}, {
"count": 2,
"value": "A3 - Cross-Site Scripting (XSS)"
}],
"owasp2007": [{
"count": 1,
"value": "A4 - Insecure Direct Object Reference"
}, {
"count": 9,
"value": "A2 - Injection Flaws"
}, {
"count": 2,
"value": "A1 - Cross-Site Scripting (XSS)"
}, {
"count": 1,
"value": "A9 - Insecure Communications"
}],
"pci2": [{
"count": 10,
"value": "6.5.1 - Injection Flaws"
}, {
"count": 1,
"value": "6.5.4 - Insecure communications"
}, {
"count": 9,
"value": "10.5.2"
}, {
"count": 2,
"value": "6.5.7 - Cross-Site Scripting (XSS)"
}, {
"count": 1,
"value": "4.1"
}],
"owasp2017": [{
"count": 4,
"value": "A5 - Broken Access Control"
}, {
"count": 1,
"value": "A3 - Sensitive Data Exposure"
}, {
"count": 9,
"value": "A1 - Injection"
}, {
"count": 2,
"value": "A7 - Cross-Site Scripting (XSS)"
}],
"pci3": [{
"count": 10,
"value": "6.5.1 - Injection Flaws"
}, {
"count": 14,
"value": "6.5.6"
}, {
"count": 1,
"value": "6.5.4 - Insecure communications"
}, {
"count": 9,
"value": "10.5.2"
}, {
"count": 2,
"value": "6.5.7 - Cross-site Scripting (XSS)"
}, {
"count": 1,
"value": "4.1 - Insecure Cardholder Data Transmission"
}],
"fisma": [{
"count": 11,
"value": "SI"
}, {
"count": 3,
"value": "MP"
}, {
"count": 9,
"value": "AU"
}, {
"count": 1,
"value": "CM"
}, {
"count": 1,
"value": "SC"
}],
"owasp2004": [{
"count": 10,
"value": "A1 - Un-validated Input"
}, {
"count": 10,
"value": "A9 - Denial of Service"
}, {
"count": 2,
"value": "A4 - Cross Site Scripting (XSS) Flaws"
}, {
"count": 1,
"value": "A3 - Broken Authentication and Session Management"
}],
"pci3_1": [{
"count": 1,
"value": "6.5.8 - Improper Access Control"
}, {
"count": 14,
"value": "6.5.6 - High Risk Vulnerabilities"
}, {
"count": 1,
"value": "6.5.4 - Insecure Communications"
}, {
"count": 9,
"value": "6.5.1 - Injection Flaws"
}, {
"count": 9,
"value": "10.5.2"
}, {
"count": 2,
"value": "6.5.7 - Cross-Site Scripting (XSS)"
}, {
"count": 1,
"value": "4.1 - Insecure Cardholder Data Transmission"
}],
"sti4_1": [{
"count": 1,
"value": "APSC-DV-002150 CAT II"
}, {
"count": 12,
"value": "APSC-DV-002560 CAT I"
}, {
"count": 1,
"value": "APSC-DV-002520 CAT II"
}, {
"count": 10,
"value": "APSC-DV-002400 CAT II"
}, {
"count": 10,
"value": "APSC-DV-002000 CAT II"
}, {
"count": 3,
"value": "APSC-DV-001480 CAT II"
}, {
"count": 3,
"value": "APSC-DV-001490 CAT II"
}, {
"count": 3,
"value": "APSC-DV-000460 CAT I"
}, {
"count": 3,
"value": "APSC-DV-000470 CAT II"
}, {
"count": 2,
"value": "APSC-DV-002490 CAT I"
}, {
"count": 1,
"value": "APSC-DV-002440 CAT I"
}, {
"count": 1,
"value": "APSC-DV-002450 CAT II"
}, {
"count": 1,
"value": "APSC-DV-002460 CAT II"
}, {
"count": 1,
"value": "APSC-DV-002470 CAT II"
}, {
"count": 1,
"value": "APSC-DV-001620 CAT II"
}, {
"count": 1,
"value": "APSC-DV-001630 CAT II"
}, {
"count": 1,
"value": "APSC-DV-001810 CAT I"
}],
"sti4_3": [{
"count": 1,
"value": "APSC-DV-002150 CAT II"
}, {
"count": 12,
"value": "APSC-DV-002560 CAT I"
}, {
"count": 1,
"value": "APSC-DV-002520 CAT II"
}, {
"count": 10,
"value": "APSC-DV-002400 CAT II"
}, {
"count": 10,
"value": "APSC-DV-002000 CAT II"
}, {
"count": 3,
"value": "APSC-DV-001480 CAT II"
}, {
"count": 3,
"value": "APSC-DV-001490 CAT II"
}, {
"count": 3,
"value": "APSC-DV-000460 CAT I"
}, {
"count": 3,
"value": "APSC-DV-000470 CAT II"
}, {
"count": 2,
"value": "APSC-DV-002490 CAT I"
}, {
"count": 1,
"value": "APSC-DV-001620 CAT II"
}, {
"count": 1,
"value": "APSC-DV-001630 CAT II"
}, {
"count": 1,
"value": "APSC-DV-001810 CAT I"
}, {
"count": 1,
"value": "APSC-DV-002440 CAT I"
}, {
"count": 1,
"value": "APSC-DV-002450 CAT II"
}, {
"count": 1,
"value": "APSC-DV-002460 CAT II"
}, {
"count": 1,
"value": "APSC-DV-002470 CAT II"
}],
"pci3_2": [{
"count": 1,
"value": "6.5.8 - Improper Access Control"
}, {
"count": 14,
"value": "6.5.6 - High Risk Vulnerabilities"
}, {
"count": 1,
"value": "6.5.4 - Insecure Communications"
}, {
"count": 9,
"value": "6.5.1 - Injection Flaws"
}, {
"count": 9,
"value": "10.5.2"
}, {
"count": 2,
"value": "6.5.7 - Cross-Site Scripting (XSS)"
}, {
"count": 1,
"value": "4.1 - Insecure Cardholder Data Transmission"
}],
"sans2010": [{
"count": 2,
"value": "CWE-079 - Insecure Interaction"
}],
"sti3_9": [{
"count": 11,
"value": "APP3510 CAT I"
}, {
"count": 10,
"value": "APP6080 CAT II"
}, {
"count": 1,
"value": "APP3250.1 CAT I"
}, {
"count": 1,
"value": "APP3250.2 CAT I"
}, {
"count": 1,
"value": "APP3250.3 CAT II"
}, {
"count": 1,
"value": "APP3250.4 CAT II"
}, {
"count": 9,
"value": "APP3690.2 CAT II"
}, {
"count": 9,
"value": "APP3690.4 CAT II"
}, {
"count": 2,
"value": "APP3580 CAT I"
}],
"sans2011": [{
"count": 2,
"value": "CWE-079 - Insecure Interaction"
}],
"sans2009": [{
"count": 10,
"value": "CWE-404 - Risky Resource Management"
}, {
"count": 2,
"value": "CWE-079 - Insecure Interaction"
}],
"wasc24_2": [{
"count": 1,
"value": "Information Leakage"
}, {
"count": 10,
"value": "Denial of Service"
}, {
"count": 2,
"value": "Cross-Site Scripting"
}]
}
}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment