wstg icon indicating copy to clipboard operation
wstg copied to clipboard

Known Issue: WSTG-INPV-13 is listed twice in checklist.json

Open J0n-H4rr150n opened this issue 1 year ago • 5 comments

What's the issue? WSTG-INPV-13 has two records in the checklist.json file. https://github.com/OWASP/wstg/blob/master/checklists/checklist.json#L617

https://github.com/OWASP/wstg/blob/74c9f95d4530781b7c69aab5dde48af15f5d4851/checklists/checklist.json#L625

How do we solve it? WSTG-INPV-13 with the name of Testing for Buffer Overflow should be removed since it was removed from the main list of tests (see link below).

https://owasp.org/www-project-web-security-testing-guide/latest/4-Web_Application_Security_Testing/07-Input_Validation_Testing/13-Testing_for_Buffer_Overflow

Would you like to be assigned to this issue? Check the box if you will submit a PR to fix this issue. Please read CONTRIBUTING.md.

  • [x] Assign me, please!

J0n-H4rr150n avatar Nov 19 '24 15:11 J0n-H4rr150n

Please refer to: https://github.com/OWASP/wstg/issues/1163 for clarification.

  • https://github.com/OWASP/wstg/blob/master/document/4-Web_Application_Security_Testing/07-Input_Validation_Testing/13-Testing_for_Buffer_Overflow.md
  • https://github.com/OWASP/wstg/blob/master/document/4-Web_Application_Security_Testing/07-Input_Validation_Testing/13-Testing_for_Format_String_Injection.md

kingthorin avatar Nov 19 '24 15:11 kingthorin

Hi! I'd like to work on this issue. Can you please assign it to me?
I'll remove the duplicate entry for WSTG-INPV-13 in checklist.json as per the discussion.

aakarshgopishetty avatar Mar 23 '25 09:03 aakarshgopishetty

You don't seem to have read the discussion, the placeholders exist on purpose.

kingthorin avatar Mar 23 '25 09:03 kingthorin

Thanks for the clarification, @kingthorin. I misunderstood the discussion.
Would you like any modifications or improvements to the placeholders, or should I leave this issue as is?

Appreciate your guidance!

aakarshgopishetty avatar Mar 23 '25 09:03 aakarshgopishetty

It can be left for the time being thanks

kingthorin avatar Mar 23 '25 10:03 kingthorin