You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The list below presents the 10 most relevant findings that need your attention. To view information on the remaining findings, navigate to the Mend Application.
mend-for-github-combot
changed the title
Code Security Report: 18 high severity findings, 26 total findings [main]
Code Security Report: 15 high severity findings, 23 total findings [main]
Jan 15, 2025
mend-for-github-combot
changed the title
Code Security Report: 15 high severity findings, 23 total findings [main]
Code Security Report: 16 high severity findings, 24 total findings [main]
Jan 29, 2025
mend-for-github-combot
changed the title
Code Security Report: 16 high severity findings, 24 total findings [main]
Code Security Report: 16 high severity findings, 25 total findings [main]
Feb 4, 2025
mend-for-github-combot
changed the title
Code Security Report: 16 high severity findings, 25 total findings [main]
Code Security Report: 16 high severity findings, 22 total findings [main]
Feb 11, 2025
Code Security Report
Scan Metadata
Latest Scan: 2025-02-26 03:25pm
Total Findings: 22 | New Findings: 0 | Resolved Findings: 0
Tested Project Files: 138
Detected Programming Languages: 2 (Go, Python)
Most Relevant Findings
CWE-73
block_cache_linux.go:979
cloudfuse/component/block_cache/block_cache_linux.go
Lines 974 to 979 in 90e2ef9
1 Data Flow/s detected
cloudfuse/component/block_cache/block_cache_linux.go
Line 913 in 90e2ef9
cloudfuse/component/block_cache/block_cache_linux.go
Line 919 in 90e2ef9
cloudfuse/component/block_cache/block_cache_linux.go
Line 979 in 90e2ef9
● Training
▪ Secure Code Warrior File Manipulation Training
● Videos
▪ Secure Code Warrior File Manipulation Video
● Further Reading
▪ OWASP Path Traversal
▪ OWASP Input Validation Cheat Sheet
CWE-732
mount_all.go:343
cloudfuse/cmd/mount_all.go
Lines 338 to 343 in 90e2ef9
1 Data Flow/s detected
cloudfuse/cmd/mount_all.go
Line 343 in 90e2ef9
CWE-22
write.py:16
cloudfuse/perf_testing/scripts/write.py
Lines 11 to 16 in 90e2ef9
2 Data Flow/s detected
View Data Flow 1
cloudfuse/perf_testing/scripts/write.py
Line 7 in 90e2ef9
View Data Flow 2
cloudfuse/perf_testing/scripts/write.py
Line 6 in 90e2ef9
● Training
▪ Secure Code Warrior Path/Directory Traversal Training
● Videos
▪ Secure Code Warrior Path/Directory Traversal Video
● Further Reading
▪ OWASP Path Traversal
▪ OWASP Input Validation Cheat Sheet
CWE-73
block_cache_linux.go:1689
cloudfuse/component/block_cache/block_cache_linux.go
Lines 1684 to 1689 in 90e2ef9
1 Data Flow/s detected
cloudfuse/component/block_cache/block_cache_linux.go
Line 913 in 90e2ef9
● Training
▪ Secure Code Warrior File Manipulation Training
● Videos
▪ Secure Code Warrior File Manipulation Video
● Further Reading
▪ OWASP Path Traversal
▪ OWASP Input Validation Cheat Sheet
CWE-732
block_cache_linux.go:970
cloudfuse/component/block_cache/block_cache_linux.go
Lines 965 to 970 in 90e2ef9
1 Data Flow/s detected
cloudfuse/component/block_cache/block_cache_linux.go
Line 970 in 90e2ef9
CWE-732
journal.go:57
cloudfuse/component/size_tracker/journal.go
Lines 52 to 57 in 90e2ef9
1 Data Flow/s detected
cloudfuse/component/size_tracker/journal.go
Line 57 in 90e2ef9
CWE-78
mount_all.go:377
cloudfuse/cmd/mount_all.go
Lines 372 to 377 in 90e2ef9
1 Data Flow/s detected
cloudfuse/cmd/mount_all.go
Line 69 in 90e2ef9
● Training
▪ Secure Code Warrior Command Injection Training
● Videos
▪ Secure Code Warrior Command Injection Video
● Further Reading
▪ OWASP testing for Command Injection
▪ OWASP Command Injection
CWE-732
base_logger.go:186
cloudfuse/common/log/base_logger.go
Lines 181 to 186 in 90e2ef9
1 Data Flow/s detected
cloudfuse/common/log/base_logger.go
Line 186 in 90e2ef9
CWE-732
stats_export.go:278
cloudfuse/tools/health-monitor/internal/stats_export.go
Lines 273 to 278 in 90e2ef9
1 Data Flow/s detected
cloudfuse/tools/health-monitor/internal/stats_export.go
Line 278 in 90e2ef9
CWE-73
service_windows.go:102
cloudfuse/cmd/service_windows.go
Lines 97 to 102 in 90e2ef9
1 Data Flow/s detected
cloudfuse/cmd/service_windows.go
Line 101 in 90e2ef9
● Training
▪ Secure Code Warrior File Manipulation Training
● Videos
▪ Secure Code Warrior File Manipulation Video
● Further Reading
▪ OWASP Path Traversal
▪ OWASP Input Validation Cheat Sheet
Findings Overview
The text was updated successfully, but these errors were encountered: