Remediate OWASP A03:2021 Injection
Recipe ID
org.openrewrite.java.security.OwaspA03Artifact
org.openrewrite.recipe:rewrite-java-securityOWASP A03:2021 describes failures related to user-supplied data being used to influence program state to operate outside of its intended bounds. This recipe seeks to remediate these vulnerabilities.
Usage
This recipe has no required configuration options. You’ll need the Moderne CLI configured before running the command below.
mod run . --recipe org.openrewrite.java.security.OwaspA03If the recipe isn’t available locally, install it with:
mod config recipes jar install org.openrewrite.recipe:rewrite-java-security:3.36.0Definition
This recipe runs the following recipes in order.
- Regular Expression Denial of Service (ReDOS)
org.openrewrite.java.security.RegularExpressionDenialOfService - Use comparison rather than equality checks in for conditions
org.openrewrite.staticanalysis.NoEqualityInForCondition - Insecure cookies
org.openrewrite.java.security.servlet.CookieSetSecure - Fix XSS vulnerabilities
org.openrewrite.java.security.xss.FixXssVulnerability
Data tables
Structured output this recipe can produce.
- Source files that had resultsSource files that were modified by the recipe run.
org.openrewrite.table.SourcesFileResults - Source files that had search resultsSearch results that were found during the recipe run.
org.openrewrite.table.SearchResults - Source files that errored on a recipeThe details of all errors produced by a recipe run.
org.openrewrite.table.SourcesFileErrors - Recipe performanceStatistics used in analyzing the performance of recipes.
org.openrewrite.table.RecipeRunStats