Skip to content

Problem: missing validation on nft-transfer message fields #2617

Problem: missing validation on nft-transfer message fields

Problem: missing validation on nft-transfer message fields #2617

Triggered via pull request December 5, 2023 07:14
Status Failure
Total duration 2m 9s
Artifacts

audit.yml

on: pull_request
Fit to window
Zoom out
Zoom in

Annotations

10 errors
check: app/app.go#L884
github.com/crypto-org-chain/chain-main/v4/app.RegisterSwaggerAPI calls github.com/rakyll/statik/fs.NewWithNamespace, which eventually calls path/filepath.IsLocal
check: app/app.go#L750
github.com/crypto-org-chain/chain-main/v4/app.ChainApp.BeginBlocker calls github.com/cosmos/cosmos-sdk/server.ZeroLogWrapper.Info, which eventually calls path/filepath.Rel
check: app/app.go#L777
github.com/crypto-org-chain/chain-main/v4/app.ChainApp.LoadHeight calls github.com/cosmos/cosmos-sdk/baseapp.BaseApp.LoadVersion, which eventually calls path/filepath.Abs
check: app/app.go#L884
github.com/crypto-org-chain/chain-main/v4/app.RegisterSwaggerAPI calls github.com/rakyll/statik/fs.NewWithNamespace, which eventually calls path/filepath.IsLocal
check: cmd/chain-maind/app/appunix.go#L13
github.com/crypto-org-chain/chain-main/v4/cmd/chain-maind/app.WriteFile calls github.com/google/renameio.WriteFile, which eventually calls path/filepath.Base
check: cmd/chain-maind/main.go#L14
github.com/crypto-org-chain/chain-main/v4/cmd/chain-maind.main calls github.com/cosmos/cosmos-sdk/server/cmd.Execute, which eventually calls path/filepath.EvalSymlinks
check: cmd/chain-maind/main.go#L14
github.com/crypto-org-chain/chain-main/v4/cmd/chain-maind.main calls github.com/cosmos/cosmos-sdk/server/cmd.Execute, which eventually calls path/filepath.Glob
check: cmd/chain-maind/main.go#L14
github.com/crypto-org-chain/chain-main/v4/cmd/chain-maind.main calls github.com/cosmos/cosmos-sdk/server/cmd.Execute, which eventually calls path/filepath.Walk
check: x/chainmain/client/cli/testnet.go#L226
github.com/crypto-org-chain/chain-main/v4/x/chainmain/client/cli.InitTestnet calls path/filepath.Join
check: x/chainmain/client/cli/testnet.go#L245
github.com/crypto-org-chain/chain-main/v4/x/chainmain/client/cli.InitTestnet calls github.com/cosmos/cosmos-sdk/x/genutil.InitializeNodeValidatorFiles, which eventually calls path/filepath.Dir