Skip to content

Hcl vulnerability list update#297

Open
AkashSahai wants to merge 9 commits intoOWASP-Benchmark:mainfrom
AkashSahai:HCL_Vulnerability_List_Update
Open

Hcl vulnerability list update#297
AkashSahai wants to merge 9 commits intoOWASP-Benchmark:mainfrom
AkashSahai:HCL_Vulnerability_List_Update

Conversation

@AkashSahai
Copy link
Copy Markdown

@AkashSahai AkashSahai commented May 5, 2026

Updated the Hcl vulnerability list to get proper results after running crawler and scorecard scripts for Owasp Benchmark Python.

  • Add 5 entries to vulnerabilityToCweNumber map and modified mapping for 1.

Added more CWE mappings for HCL AppScan
Modified mapping of attJavaDeserCodeExec for HCL AppScan IAST
Modified IAST related vulnerability mappings
Added CodeInjection mapping for IAST
…ability

added DeserializationOfUntrustedData as another option for 502 Vulnerability
Removed added MISSING_REFERRER_POLICY_HEADER as this was handled using CweNumber.DONTCARE
removed not required code
removed whitespace
@AkashSahai
Copy link
Copy Markdown
Author

Hi @davewichers,
please take a look at this PR and merge if everything looks good.

Thanks.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant