Skip to content

CX Information_Exposure_Through_an_Error_Message @ src/main/java/org/joychou/controller/SSRF.java [master] #72

@DannyLoweCx

Description

@DannyLoweCx

Information_Exposure_Through_an_Error_Message issue exists @ src/main/java/org/joychou/controller/SSRF.java in branch master

Method ssrf_openStream, at line 111 of src\main\java\org\joychou\controller\SSRF.java, handles an Exception or runtime Error e. During the exception handling code, the application exposes the exception details to printStackTrace, in method ssrf_openStream of src\main\java\org\joychou\controller\SSRF.java, line 111.

Severity: Low

CWE:209

Vulnerability details and guidance

Internal Guidance

Checkmarx

Lines: 257 129


Code (Line #257):

        } catch (Exception e) {

Code (Line #129):

        }catch (Exception e) {

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions