6 Commits

Author SHA1 Message Date
github-actions[bot]
8dc1c62edd
Create rule S6474: Using remote artifacts without authenticity and integrity checks is security-sensitive (SONARKT-574) (#4720) 2025-03-06 11:18:16 +01:00
Jamie Anderson
9ee16daa47
Modify rules: Add STIG AS&D 2023-06-08 mappings (#3914)
* Update JSON schema to include STIG ASD 2023-06-08 mapping

* Update rules to add STIG metadata mappings

---------

Co-authored-by: Loris Sierra <loris.sierra@sonarsource.com>
2024-05-06 08:56:31 +02:00
Egon Okerman
d1417e82f8
Modify CWE and OWASP Top 10 links to follow standard link format (APPSEC-1134) (#3529)
* Fix all CWE references

* Fix all OWASP references

* Fix missing CWE prefixes
2024-01-15 17:15:56 +01:00
Loris S
5e313be72b
Modify Rule S6474(Docker): Add ADD-originating artifacts to scope (#1514) 2023-02-01 10:23:29 +01:00
Loris S
f976cacc35
Modify Rule S6474(Docker): Remove obsolete crypto hash reco (#1450) 2022-12-05 10:58:39 +01:00
github-actions[bot]
839e48cfa6
Create rule S6474(docker): Using remote artifacts without authenticity and integrity checks is security-sensitive (APPSEC-282) (#1405) 2022-11-25 17:02:31 +01:00