Skip to content

AutoFix PR#34

Open
nishfath wants to merge 1 commit into
mainfrom
qwietai/autofix/fix0003
Open

AutoFix PR#34
nishfath wants to merge 1 commit into
mainfrom
qwietai/autofix/fix0003

Conversation

@nishfath
Copy link
Copy Markdown
Owner

@nishfath nishfath commented May 20, 2026

Harness SAST and SCA AutoFix

This PR was created automatically by the Harness SAST and SCA AutoFix tool.
As long as it is open, subsequent scans and generated fixes to this same branch will be added to it as new commits.

Each commit fixes one vulnerability.

Some manual intervention might be required before merging this PR.

Project Information

Findings/Vulnerabilities Fixed

Finding 13: Deserialization: Attacker-controlled Data Used in Unsafe Deserialization Function via auth in AdminController.doPostLogin

Vulnerability Description

Attacker-controlled data is deserialized. This indicates an insecure deserialization vulnerability.

  • Severity: high
  • CVSS Score: 8 (high)
  • CWE: 502
  • Category: Deserialization
Commits/Files Changed

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant