FluidFramework icon indicating copy to clipboard operation
FluidFramework copied to clipboard

ODSP driver and utils: Review URL substring sanitization

Open tylerbutler opened this issue 2 years ago • 3 comments

Tracking issue for:

  • [ ] https://github.com/microsoft/FluidFramework/security/code-scanning/24
  • [ ] https://github.com/microsoft/FluidFramework/security/code-scanning/25
  • [ ] https://github.com/microsoft/FluidFramework/security/code-scanning/26
  • [ ] https://github.com/microsoft/FluidFramework/security/code-scanning/27
  • [ ] https://github.com/microsoft/FluidFramework/security/code-scanning/29

tylerbutler avatar Mar 09 '22 19:03 tylerbutler

@microsoft/fluid-cr-odsp Can you folks take a look at these (and any other ODSP-related code scanning issues you see) and either dismiss them or otherwise deal with them? Thanks!

tylerbutler avatar Mar 09 '22 20:03 tylerbutler

Seems to be valid warnings, I'd keep this bug.

vladsud avatar Mar 11 '22 03:03 vladsud

This issue has been automatically marked as stale because it has had no activity for 180 days. It will be closed if no further activity occurs within 8 days of this comment. Thank you for your contributions to Fluid Framework!

Eugeny avatar Sep 07 '22 15:09 Eugeny

This PR has been automatically marked as stale because it has had no activity for 60 days. It will be closed if no further activity occurs within 8 days of this comment. Thank you for your contributions to Fluid Framework!