Python

TitleSeverity
XML Injectionhigh
Weak Password Requirementsmedium
Weak Password Requirementsmedium
Weak Password Requirementslow
Use of Obsolete Functionlow
Use of Insufficiently Random Valuesmedium
Use of Incorrectly-Resolved Name or Referencelow
Use of Hard-coded Credentialshigh
Use of Hard-coded Credentialslow
Use of Externally-Controlled Format Stringlow
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmhigh
Use of a Broken or Risky Cryptographic Algorithmlow
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmhigh
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmhigh
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
Use of a Broken or Risky Cryptographic Algorithmmedium
URL Redirection to Untrusted Site ('Open Redirect')medium
URL Redirection to Untrusted Site ('Open Redirect')low
Unprotected Transport of Credentialslow
Uncontrolled Resource Consumptionmedium
Server-Side Request Forgery (SSRF)high
Server-Side Request Forgery (SSRF)high
Server-Side Request Forgery (SSRF)low
Server-Side Request Forgery (SSRF)medium
Server-Side Request Forgery (SSRF)high
Sensitive Cookie Without 'HttpOnly' Flaglow
Sensitive Cookie Without 'HttpOnly' Flaglow
Sensitive Cookie Without 'HttpOnly' Flaglow
Sensitive Cookie Without 'HttpOnly' Flaglow
Sensitive Cookie with Improper SameSite Attributelow
Sensitive Cookie with Improper SameSite Attributelow
Sensitive Cookie with Improper SameSite Attributelow
Sensitive Cookie in HTTPS Session Without 'Secure' Attributelow
Sensitive Cookie in HTTPS Session Without 'Secure' Attributelow
Sensitive Cookie in HTTPS Session Without 'Secure' Attributelow
Sensitive Cookie in HTTPS Session Without 'Secure' Attributelow
Sensitive Cookie in HTTPS Session Without 'Secure' Attributelow
Sensitive Cookie in HTTPS Session Without 'Secure' Attributelow
Permissive Cross-domain Policy with Untrusted Domainsmedium
Permissive Cross-domain Policy with Untrusted Domainsmedium
Key Exchange without Entity Authenticationlow
Insufficiently Protected Credentialslow
Insufficiently Protected Credentialslow
Insufficiently Protected Credentialshigh
Insertion of Sensitive Information into Log Filemedium
Inefficient Regular Expression Complexitylow
Incorrect Type Conversion or Castmedium
Incorrect Type Conversion or Castmedium
Incorrect Type Conversion or Castmedium
Incorrect Default Permissionsmedium
Inadequate Encryption Strengthmedium
Inadequate Encryption Strengthmedium
Inadequate Encryption Strengthmedium
Inadequate Encryption Strengthmedium
Inadequate Encryption Strengthmedium
Inadequate Encryption Strengthlow
Inadequate Encryption Strengthmedium
Inadequate Encryption Strengthmedium
Improperly Controlled Modification of Dynamically-Determined Object Attributeslow
Improperly Controlled Modification of Dynamically-Determined Object Attributeslow
Improper Restriction of XML External Entity Referencelow
Improper Restriction of XML External Entity Referencemedium
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')low
Improper Neutralization of Wildcards or Matching Symbolslow
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')low
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')medium
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')medium
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')high
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')high
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')high
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')high
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')high
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')medium
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')medium
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')medium
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')medium
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')high
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')high
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')high
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')high
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')high
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')high
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')medium
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')medium
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')medium
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')medium
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')low
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')low
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')high
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')medium
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')medium
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')medium
Improper Neutralization of Special Elements in Data Query Logicmedium
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')medium
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')medium
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')medium
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')high
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')medium
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')high
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')high
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')high
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')low
Improper Neutralization of Formula Elements in a CSV Filemedium
Improper Neutralization of Formula Elements in a CSV Filemedium
Improper Neutralization of Formula Elements in a CSV Filelow
Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')low
Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')medium
Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')medium
Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')low
Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')low
Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')low
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')high
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')high
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')high
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')high
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')medium
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')high
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')medium
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')low
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')medium
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')high
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')high
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')low
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')medium
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')medium
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')high
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')medium
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')medium
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')high
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')high
Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')high
Improper Neutralization of CRLF Sequences ('CRLF Injection')medium
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')low
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')low
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')medium
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')medium
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')high
Improper Input Validationmedium
Improper Input Validationlow
Improper Encoding or Escaping of Outputmedium
Improper Encoding or Escaping of Outputmedium
Improper Certificate Validationlow
Improper Certificate Validationhigh
Improper Certificate Validationlow
Improper Certificate Validationmedium
Improper Authorization in Handler for Custom URL Schemelow
Improper Authenticationmedium
External Control of File Name or Pathlow
Exposure of Sensitive Information to an Unauthorized Actorhigh
Exposure of Resource to Wrong Spherehigh
Exposure of Resource to Wrong Spheremedium
Execution with Unnecessary Privilegesmedium
Deserialization of Untrusted Datamedium
Deserialization of Untrusted Datalow
Deserialization of Untrusted Datamedium
Deserialization of Untrusted Datalow
Deserialization of Untrusted Datamedium
Deserialization of Untrusted Datamedium
Deserialization of Untrusted Datamedium
Deserialization of Untrusted Datalow
Deserialization of Untrusted Datalow
Deserialization of Untrusted Datalow
Deserialization of Untrusted Datalow
Deserialization of Untrusted Datalow
Cross-Site Request Forgery (CSRF)low
Cross-Site Request Forgery (CSRF)low
Cross-Site Request Forgery (CSRF)low
Cross-Site Request Forgery (CSRF)low
Cross-Site Request Forgery (CSRF)low
Cross-Site Request Forgery (CSRF)low
Command Shell in Externally Accessible Directorylow
Cleartext Transmission of Sensitive Informationmedium
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationlow
Cleartext Transmission of Sensitive Informationmedium
Active Debug Codelow
Active Debug Codelow
Active Debug Codelow
Active Debug Codelow
Active Debug Codehigh