Commit 67b71a3
authored
Implement
- Add UnnecessarilyGrantedPrivilegedAccessRights.ql query.
- Fix wrong assumptions on cds.requires in test cases: previously cds.requires had service-1 and service-2.UnnecessarilyGrantedPrivilegedAccessRights (#139)1 parent 4b2580a commit 67b71a3
50 files changed
Lines changed: 458 additions & 297 deletions
File tree
- .github/workflows
- javascript/frameworks/cap
- lib/advanced_security/javascript/frameworks/cap
- dataflow
- src/bad-authn-authz
- DynamicallyGeneratedPrivileged
- EntityExposedWithoutAuthn
- UnnecessarilyGrantedPrivilegedAccessRights
- test
- models/cds/applicationserviceinstance
- queries/bad-authn-authz
- entities-with-no-authz
- entities-exposed-with-cds-authz
- srv
- entities-exposed-with-js-authz-cds-serve
- srv
- entities-exposed-with-js-authz
- srv
- entities-exposed-with-no-authz
- srv
- misused-privileged-user
- default-is-privileged
- srv
- unnecessarily-granted-privileged-access-rights
- db
- srv
- nonprod-authn-strategy
- basic-authentication
- srv
- dummy-authentication
- srv
- mocked-authentication/srv
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
Large diffs are not rendered by default.
Lines changed: 66 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + | |
| 54 | + | |
| 55 | + | |
| 56 | + | |
| 57 | + | |
| 58 | + | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
| 63 | + | |
| 64 | + | |
| 65 | + | |
| 66 | + | |
Lines changed: 9 additions & 24 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
34 | 34 | | |
35 | 35 | | |
36 | 36 | | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
37 | 46 | | |
38 | 47 | | |
39 | 48 | | |
| |||
128 | 137 | | |
129 | 138 | | |
130 | 139 | | |
131 | | - | |
132 | | - | |
133 | | - | |
134 | | - | |
135 | | - | |
136 | | - | |
137 | 140 | | |
138 | 141 | | |
139 | 142 | | |
| |||
166 | 169 | | |
167 | 170 | | |
168 | 171 | | |
169 | | - | |
170 | | - | |
171 | | - | |
172 | | - | |
173 | | - | |
174 | | - | |
175 | 172 | | |
176 | 173 | | |
177 | 174 | | |
178 | 175 | | |
179 | 176 | | |
180 | 177 | | |
181 | | - | |
182 | | - | |
183 | | - | |
184 | | - | |
185 | | - | |
186 | | - | |
187 | 178 | | |
188 | 179 | | |
189 | 180 | | |
| |||
194 | 185 | | |
195 | 186 | | |
196 | 187 | | |
197 | | - | |
198 | | - | |
199 | | - | |
200 | | - | |
201 | | - | |
202 | | - | |
203 | 188 | | |
204 | 189 | | |
205 | 190 | | |
| |||
0 commit comments