]> source.dussan.org Git - sonarqube.git/commitdiff
SONAR-14536 Add Security Report PDF
authorZipeng WU <zipeng.wu@sonarsource.com>
Wed, 3 Mar 2021 15:59:44 +0000 (16:59 +0100)
committersonartech <sonartech@sonarsource.com>
Mon, 15 Mar 2021 21:29:06 +0000 (21:29 +0000)
server/sonar-server-common/src/main/java/org/sonar/server/security/SecurityStandards.java

index 22f10f78d5a6ccc8ee0d6db0c6158e4c63844e96..a6473f10db67353277b00643d722035410c144ca 100644 (file)
@@ -115,20 +115,20 @@ public final class SecurityStandards {
   public enum SQCategory {
     BUFFER_OVERFLOW("buffer-overflow", HIGH),
     SQL_INJECTION("sql-injection", HIGH),
+    RCE("rce", MEDIUM),
+    OBJECT_INJECTION("object-injection", LOW),
     COMMAND_INJECTION("command-injection", HIGH),
     PATH_TRAVERSAL_INJECTION("path-traversal-injection", HIGH),
     LDAP_INJECTION("ldap-injection", LOW),
     XPATH_INJECTION("xpath-injection", LOW),
-    RCE("rce", MEDIUM),
+    LOG_INJECTION("log-injection", LOW),
+    XXE("xxe", MEDIUM),
+    XSS("xss", HIGH),
     DOS("dos", MEDIUM),
     SSRF("ssrf", MEDIUM),
     CSRF("csrf", HIGH),
-    XSS("xss", HIGH),
-    LOG_INJECTION("log-injection", LOW),
     HTTP_RESPONSE_SPLITTING("http-response-splitting", LOW),
     OPEN_REDIRECT("open-redirect", MEDIUM),
-    XXE("xxe", MEDIUM),
-    OBJECT_INJECTION("object-injection", LOW),
     WEAK_CRYPTOGRAPHY("weak-cryptography", MEDIUM),
     AUTH("auth", HIGH),
     INSECURE_CONF("insecure-conf", LOW),