forked from snyk-labs/nodejs-goof
-
Notifications
You must be signed in to change notification settings - Fork 3
Pull requests: COG-GTM/nodejs-goof
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Fix: Path Traversal vulnerability (SonarQube S2083)
#38
opened Jun 16, 2026 by
devin-ai-integration
Bot
Loading…
Fix: Open Redirect vulnerability (SonarQube S5146)
#37
opened Jun 16, 2026 by
devin-ai-integration
Bot
Loading…
Fix NoSQL injection (SonarQube jssecurity:S5147) in routes/index.js
#36
opened Jun 16, 2026 by
devin-ai-integration
Bot
Loading…
Migrate nodejs-goof from Node.js/Express to Python/Flask (vulnerabilities preserved)
#35
opened Jun 9, 2026 by
devin-ai-integration
Bot
Loading…
feature: port routes/index.js to Flask blueprint (routes/__init__.py)
#33
opened Jun 9, 2026 by
devin-ai-integration
Bot
Loading…
Convert nodejs-goof from Node/Express to Python/Flask
#28
opened Jun 9, 2026 by
eashansinha
Loading…
Migrate nodejs-goof from Node.js/Express to Python/Flask
#27
opened Jun 9, 2026 by
devin-ai-integration
Bot
Loading…
Fix Snyk Code NoSQL Injection and Open Redirect in routes/index.js
#26
opened Jun 4, 2026 by
devin-ai-integration
Bot
Loading…
Fix Snyk Code findings: NoSQL Injection & Open Redirect in routes/index.js
#25
opened Jun 4, 2026 by
devin-ai-integration
Bot
Loading…
fix: [Vuln #10] upgrade dustjs-linkedin 2.5.0 → 2.7.5 (CVE-2021-4264 - Prototype Pollution)
#24
opened May 29, 2026 by
devin-ai-integration
Bot
Loading…
3 tasks
fix: [Vulns #2,6,8] upgrade tap 11.x → 18.x to resolve 3 critical transitive dependency CVEs
#23
opened May 29, 2026 by
devin-ai-integration
Bot
Loading…
4 tasks
fix: [Vuln #9] upgrade body-parser 1.9.0 → 1.20.3 (CVE-2024-45590 - DoS)
#22
opened May 29, 2026 by
devin-ai-integration
Bot
Loading…
3 tasks
fix: [Vulns #3,4,5,7] upgrade hbs 4.0.4 → 4.2.1 to resolve 4 critical handlebars CVEs
#21
opened May 29, 2026 by
devin-ai-integration
Bot
Loading…
3 tasks
fix: [Vuln #1] upgrade adm-zip 0.4.7 → 0.4.11 (CVE-2018-1002204 - Zip Slip)
#20
opened May 29, 2026 by
devin-ai-integration
Bot
Loading…
2 tasks
fix: [Vuln #10] upgrade dustjs-linkedin 2.5.0 → 2.7.5 (CVE-2021-4264 - Prototype Pollution)
#19
opened May 29, 2026 by
devin-ai-integration
Bot
Loading…
2 tasks
fix: [Vuln #9] upgrade body-parser 1.9.0 → 1.20.3 (CVE-2024-45590 - DoS)
#18
opened May 29, 2026 by
devin-ai-integration
Bot
Loading…
3 tasks
fix: [Vulns #2,6,8] upgrade tap 11.x → 18.x to resolve 3 critical transitive dependency CVEs
#17
opened May 29, 2026 by
devin-ai-integration
Bot
Loading…
2 tasks
fix: [Vulns #3,4,5,7] upgrade hbs 4.0.4 → 4.2.1 to resolve 4 critical handlebars CVEs
#16
opened May 29, 2026 by
devin-ai-integration
Bot
Loading…
3 tasks
fix: [Vuln #1] upgrade adm-zip 0.4.7 → 0.4.11 (CVE-2018-1002204 - Zip Slip)
#15
opened May 29, 2026 by
devin-ai-integration
Bot
Loading…
2 tasks
fix: upgrade critical and high-severity dependencies per Snyk vulnerability report
#14
opened May 29, 2026 by
devin-ai-integration
Bot
Loading…
5 tasks
fix(deps): remediate top 5 critical Snyk vulnerability categories
#13
opened Apr 22, 2026 by
devin-ai-integration
Bot
Loading…
5 tasks
fix: Upgrade 23 vulnerable dependencies to resolve 138 SCA vulnerabilities
#12
opened Mar 9, 2026 by
devin-ai-integration
Bot
Loading…
5 tasks
fix(routes): Remediate injection and redirect vulnerabilities (S5147, S5146, S2083)
#11
opened Mar 4, 2026 by
devin-ai-integration
Bot
Loading…
4 tasks
fix(credentials): Remediate hard-coded credentials in production code (S2068, S6437)
#10
opened Mar 4, 2026 by
devin-ai-integration
Bot
Loading…
5 tasks
fix: Patch 3 L3-level security vulnerabilities — Devin API triage demo
#9
opened Feb 16, 2026 by
devin-ai-integration
Bot
Loading…
3 tasks
Previous Next
ProTip!
no:milestone will show everything without a milestone.