Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Check logs Sprint 13.6 week 2 #4521

Closed
1 task
jason-upchurch opened this issue Jul 29, 2020 · 1 comment
Closed
1 task

Check logs Sprint 13.6 week 2 #4521

jason-upchurch opened this issue Jul 29, 2020 · 1 comment
Assignees
Labels
Security: general General security concern or issue
Milestone

Comments

@jason-upchurch
Copy link
Contributor

jason-upchurch commented Jul 29, 2020

Check logs Sprint 13.6 week 2

@jason-upchurch jason-upchurch added this to the Sprint 13.6 milestone Jul 29, 2020
@jason-upchurch jason-upchurch added the Security: general General security concern or issue label Jul 29, 2020
@fecjjeng
Copy link
Contributor

fecjjeng commented Oct 7, 2020

FEC-CMS:

package.json: 4
High: Arbitrary Code Execution (fecgov/fec-cms#4026)
High: Regular Expression Denial of Service (ReDoS) fecgov/fec-cms#4065
Medium: Denial of Service (fecgov/fec-cms#4043)
Medium: Prototype Pollution (fecgov/fec-cms#4105)

requirement: 1
High: HTTP Header Injection (fecgov/fec-cms#4106)

OPEN-FEC:

package.json: 0

requirements.txt: 1
Medium: Denial of Service (DoS) (Due 10/25/2020) #4588

data/flyway/build.gradle: 0

FEC-EREGS:

package.json: 0
requirements.txt: 0

FEC-PATTERN-LIBRARY:

package.json: 0

Cloud.gov Dashboard:
9 deployer accounts, same as last week.

Offboarding:
Nothing to report

@fecjjeng fecjjeng closed this as completed Oct 7, 2020
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Security: general General security concern or issue
Projects
None yet
Development

No branches or pull requests

2 participants