jazzer icon indicating copy to clipboard operation
jazzer copied to clipboard

Coverage-guided, in-process fuzzing for the JVM

Results 61 jazzer issues
Sort by recently updated
recently updated
newest added

I added the support for org.apache.el.ExpressionFactoryImpl and jakarta.el.ExpressionFactory in Expression Language Injection Detector. With the modification we can catch Expression Language Injection within Tomcat Applications.

What is the right way to increase the input size? Similar to the [example in the README](https://github.com/CodeIntelligenceTesting/jazzer/blob/9187660732a99ffc982795bd121637a0339a0b23/README.md?plain=1#L130), I see the log message: INFO: -max_len is not provided; libFuzzer will not...

bug

While using Libfuzzers fork mode Jazzers --keep_going is naturally not enough and crashes the fuzzing after a while. Using -ignore_crashes=1 seems to work fine. But both together lead to Jazzer...

Hello I'm currenlty onboarding [pgjdbc](https://github.com/pgjdbc/pgjdbc) into oss-fuzz. One of the fuzz targets creates a java.sql.Connection to a postgresql server, which works, and then uses this connection to instanciate a `java.sql.Statement`....