Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upvote and Downvotes fixed #1093

Merged
merged 1 commit into from
Jul 31, 2024

Upvote and Downvotes fixed

98e0e51
Select commit
Loading
Failed to load commit list.
Merged

Upvote and Downvotes fixed #1093

Upvote and Downvotes fixed
98e0e51
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / CodeQL failed Jul 30, 2024 in 4s

5 new alerts including 5 high severity security vulnerabilities

New alerts in code changed by this pull request

Security Alerts:

  • 5 high

See annotations below for details.

View all branch alerts.

Annotations

Check failure on line 9 in backend/app/routes/Q&A/question/downvoteQuestion.js

See this annotation in the file changed.

Code scanning / CodeQL

Database query built from user-controlled sources High

This query object depends on a
user-provided value
.

Check failure on line 11 in backend/app/routes/Q&A/question/downvoteQuestion.js

See this annotation in the file changed.

Code scanning / CodeQL

Database query built from user-controlled sources High

This query object depends on a
user-provided value
.

Check failure on line 13 in backend/app/routes/Q&A/question/downvoteQuestion.js

See this annotation in the file changed.

Code scanning / CodeQL

Database query built from user-controlled sources High

This query object depends on a
user-provided value
.

Check failure on line 26 in backend/app/routes/Q&A/question/index.js

See this annotation in the file changed.

Code scanning / CodeQL

Missing rate limiting High

This route handler performs
a database access
, but is not rate-limited.

Check failure on line 19 in backend/app.js

See this annotation in the file changed.

Code scanning / CodeQL

Missing CSRF middleware High

This cookie middleware is serving a
request handler
without CSRF protection.
This cookie middleware is serving a
request handler
without CSRF protection.
This cookie middleware is serving a request handler without CSRF protection.
This cookie middleware is serving a request handler without CSRF protection.