Documentation
¶
Index ¶
- Constants
- func AlgNoneJwtScanHandler(o *auth.Operation, ss auth.SecurityScheme) (*report.ScanReport, error)
- func BlankSecretScanHandler(o *auth.Operation, ss auth.SecurityScheme) (*report.ScanReport, error)
- func DictSecretScanHandler(o *auth.Operation, ss auth.SecurityScheme) (*report.ScanReport, error)
- func NotVerifiedScanHandler(o *auth.Operation, ss auth.SecurityScheme) (*report.ScanReport, error)
- func NullSignatureScanHandler(o *auth.Operation, ss auth.SecurityScheme) (*report.ScanReport, error)
Constants ¶
View Source
const ( AlgNoneVulnerabilitySeverityLevel = 9 AlgNoneVulnerabilityName = "JWT Alg None" AlgNoneVulnerabilityDescription = "JWT accepts none algorithm and does verify jwt." )
View Source
const ( NotVerifiedVulnerabilitySeverityLevel = 9 NotVerifiedVulnerabilityName = "JWT Not Verified" NotVerifiedVulnerabilityDescription = "JWT is not verified." )
View Source
const ( NullSigVulnerabilitySeverityLevel = 9 NullSigVulnerabilityName = "JWT Null Signature" NullSigVulnerabilityDescription = "JWT with null signature is accepted allowing to bypass authentication." )
View Source
const ( WeakSecretVulnerabilitySeverityLevel = 9 WeakSecretVulnerabilityName = "Weak Secret Vulnerability" WeakSecretVulnerabilityDescription = "JWT is signed with a weak secret allowing attackers to issue valid JWT." )
Variables ¶
This section is empty.
Functions ¶
func AlgNoneJwtScanHandler ¶
func AlgNoneJwtScanHandler(o *auth.Operation, ss auth.SecurityScheme) (*report.ScanReport, error)
func BlankSecretScanHandler ¶
func BlankSecretScanHandler(o *auth.Operation, ss auth.SecurityScheme) (*report.ScanReport, error)
func DictSecretScanHandler ¶
func DictSecretScanHandler(o *auth.Operation, ss auth.SecurityScheme) (*report.ScanReport, error)
func NotVerifiedScanHandler ¶
func NotVerifiedScanHandler(o *auth.Operation, ss auth.SecurityScheme) (*report.ScanReport, error)
func NullSignatureScanHandler ¶
func NullSignatureScanHandler(o *auth.Operation, ss auth.SecurityScheme) (*report.ScanReport, error)
Types ¶
This section is empty.
Click to show internal directories.
Click to hide internal directories.