Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[pull] master from bugcrowd:master #26

Merged
merged 115 commits into from
May 15, 2024
Merged

[pull] master from bugcrowd:master #26

merged 115 commits into from
May 15, 2024

Conversation

pull[bot]
Copy link

@pull pull bot commented May 15, 2024

See Commits and Changes for more details.


Created by pull[bot]

Can you help keep this open source service alive? 💖 Please sponsor : )

RRudder added 30 commits April 11, 2023 16:14
Created newline at end of .md file to satisfy the linter
(The same recommendation text is used across all three)
Updated both the template.md and the recommendation.md files for parent and child variants.
Updated both the template.md and recommendation.md files
RRudder added 28 commits May 15, 2024 13:41
Updated rec for Missing 2FA failsafe
update rec for Registration Allows for Disposable Email Addresses
…not-Required

Updates to rec and template for Verification of Contact Method not Re…
Broken Auth and Session Management
Update rec for Weak Password Policy
Update to rec for Executable Download
Updates to rec for Non-Sensitive data store unencrypted
Updates to Sensitive Application Data Stored Unencrypted
Update rec for User Password Persisted in Memory
updates to rec for CSV Injection
update rec for Autocomplete Enabled
update rec for Autocorrect Enabled
Updates to rec for Plaintext Password Field
updates to rec for TRACE method XSS
Updates to recs for cookie-based XSS
Updates to rec for Flash-Based XSS
update rec for self-reflected XSS
Updates to rec for Self-Stored XSS
Updated rec for Failure to Invalidate Session for Long Timeout
updated rec for Failure to Invalidate session upon 2FA activation or …
Updated rec for Failure to Invalidate Concurrent Sessions on Logout
update rec for Failure to Invalidate Session on Logout Server-Side Only
…-session

Updated rec for Failure to Invalidate Session on Logout
…ector

Updates to recommendations for All three session fixation variants
…blic-Access

Updated recommendation for Weak login function for non-operational en…
Updated recommendation.md for malformed iOS URL Schemes
@pull pull bot added the ⤵️ pull label May 15, 2024
@pull pull bot merged commit 2ea4990 into bbhunter:master May 15, 2024
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant