About 85 results
Open links in new tab
  1. java - How to fix "Server-Side Request Forgery" issue in spring ...

    Oct 12, 2018 · Getting "Server-Side Request Forgery" issue in Fortify report while using spring restTemplate. I am making a call using restTemplate to some other REST service and passing this …

  2. Need to fix CWE ID 918 in HTTP request - Veracode

    Hi @shahidsitecore (Community Member) , Veracode Static Analysis reports CWE 918 (Server-Side Request Forgery (SSRF)) when it detects that an HTTP Request that is sent out from the application …

  3. c# - Server-Side Request Forgery Fortify Fix - Stack Overflow

    Jul 23, 2019 · Server-Side Request Forgery (Input Validation and Representation, Data Flow) The function GetAsync () on line 122 initiates a network connection to a third-party system using user …

  4. How to fix CWE-918 Server-Side Request Forgery (SSRF) - Veracode

    Hi @DPoblete626326 (Community Member) , I can see three dynamic parts in the variable `paramApi` containing the requested URL: 1. ResetPasswordServices.Sponsor 2. idClient.UserId 3. …

  5. How to fix CWE-918 Server-Side Request Forgery (SSRF) - Veracode

    How To Fix Flaws CWE 918 Server-side Request Forgery +1 more Liked Like Answer Expand Post Expand Post

  6. Unable to rectify VeraCode CWE ID 918 - (SSRF) in ASP.NET

    Sep 12, 2019 · Below is my implementation as Anti Server-Side Request Forgery (SSRF) (CWE ID 918) solutions. Sanitize your Host via this and additionally you have to set you valid Host Lists in …

  7. How to fix CWE 918 veracode flaw on webrequest getresponce method

    CWE-918 (Server-Side Request Forgery - SSRF) is a vulnerability where an application allows an attacker to induce the server to make a request to an arbitrary URL. Brevard County Property …

  8. how to fix server-side request forgery (ssrf) (cwe id 918 ... - Veracode

    Hi @ABattu219578 (Community Member) Untrusted input is used in the creation of a web-request which possibly allows an attacker to perform unauthorized requests to internal or external systems. An …

  9. Need help to fix Server-Side Request Forgery

    Hello @JJunior331643 (Community Member) , The recommendation for mitigating against SSRF flaws is to use strict validation on the untrusted data used to build the requested URL. Typically, Veracode …

  10. How to fix this Server-Side Request Forgery (SSRF) vulnerability?

    Sep 17, 2023 · We have an issue in our solution (we are using .net core) and the SNYK vulnerabilities scaner show us that we have a Server-Side Request Forgery (SSRF) vulnerability in the next code at …