-
Updated
Feb 26, 2021 - Go
security-scanner
Here are 287 public repositories matching this topic...
-
Updated
Jan 22, 2021 - Shell
-
Updated
Feb 26, 2021 - Ruby
-
Updated
Dec 12, 2020 - C#
Currently the webhint codebase doesn't follow its own best practice of using importHelpers: true to reduce the amount of redundant helper code generated by TypeScript (also requires adding tslib as a dependency). This causes unnecessary bloat in the built webhint code, particularly for large bundles like the bro
Describe the bug
In the docs found here:
https://bandit.readthedocs.io/en/latest/plugins/index.html#complete-test-plugin-listing
B109 and B111 show a description instead of a plugin name. This looks inconsistent since all the other plugin names are listed. I believe this is a result of a recent change to remove these deprecated plugins.
To Reproduce
- Navigate to https://bandit
-
Updated
Apr 24, 2020 - Python
-
Updated
Oct 2, 2020
-
Updated
Feb 18, 2021 - C#
-
Updated
Aug 7, 2020
-
Updated
Mar 5, 2020 - Python
-
Updated
May 22, 2020 - Lua
-
Updated
Jul 6, 2020 - Python
-
Updated
Aug 21, 2020 - Python
-
Updated
Feb 21, 2021 - CSS
-
Updated
Feb 19, 2021 - Go
-
Updated
Feb 26, 2021 - Ruby
-
Updated
Jan 15, 2021 - C++
-
Updated
Feb 3, 2020 - Python
-
Updated
Sep 28, 2020 - Python
-
Updated
Apr 26, 2020 - Python
-
Updated
Feb 3, 2021 - Perl
-
Updated
Aug 19, 2020
-
Updated
Nov 20, 2020
-
Updated
Jan 3, 2021 - Rust
-
Updated
Nov 18, 2019
-
Updated
Mar 26, 2020 - Python
-
Updated
Jan 6, 2021 - Python
-
Updated
Jan 7, 2021 - Python
Improve this page
Add a description, image, and links to the security-scanner topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the security-scanner topic, visit your repo's landing page and select "manage topics."


Describe the bug
I have been testing some test endpoints, where an xml file is returned. These tests get alert "A WSDL File has been detected.". I have been looking through the source code and found that Content-Type ".wsdl", "text/xml" or "application/wsdl+xml will trigger an alert (\zap\extension\soap\WSDLFilePassiveScanRule.java line 60-62). Some of the WSDL files will probably use text/xm