Skip to content

CX Privacy_Violation @ src/main/java/org/cysecurity/cspf/jvl/controller/LoginValidator.java [refs/heads/master] #204

@github-actions

Description

@github-actions

Privacy_Violation issue exists @ src/main/java/org/cysecurity/cspf/jvl/controller/LoginValidator.java in branch refs/heads/master

Method processRequest at line 64 of src\main\java\org\cysecurity\cspf\jvl\controller\LoginValidator.java sends user information outside the application. This may constitute a Privacy Violation.

Severity: Medium

CWE:359

Vulnerability details and guidance

Checkmarx

Training
Recommended Fix

Lines: 64


Code (Line #64):

                                       Cookie password=new Cookie("password",pass);

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions