Uploaded image for project: 'i2b2 Core Software'
  1. i2b2 Core Software
  2. CORE-402

Fix Veracode identified Security flaws in i2b2 Server-Side Code

    XMLWordPrintable

Details

    • Task
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • None
    • 1.7.13
    • None
    • None
    • Rank:
      0|s000ls:

    Description

      Veracode security report 8/2020- , recommendation to fix i2b2-code to fix High Security flaws to be policy compliant
      Module Name Compiler Operating Environment
      i2b2.war JAVAC_8 Java J2SE 8
      i2b2.war_htmljscode.veracodegen.htmla.js JAVASCRIPT_5_1 JavaScript

      Module Location
      i2b2.war /axis2-web/HappyAxis.jsp 453
      i2b2.war/Ontology.a ar edu/.../dao/ConceptDao.java 1028
      i2b2.war/Ontology.a ar .../CreateConceptXmlDao.java 151
      i2b2.war/Workplace. aar edu/.../dao/FolderDao.java 851
      i2b2.war/Workplace. aar edu/.../dao/FolderDao.java 854
      i2b2.war/Workplace. aar edu/.../dao/FolderDao.java 1621
      i2b2.war/CRC.aar .../QueryResultEncounterSetGenerator.ja va 113
      i2b2.war/CRC.aar .../QueryResultGenerator.java 196
      i2b2.war/CRC.aar .../QueryResultPatientAgeCountGenerat or.java 103
      i2b2.war/CRC.aar .../QueryResultPatientGenderCountGene rator.java 68
      i2b2.war/CRC.aar .../QueryResultPatientRaceCdCountGen erator.java 68
      i2b2.war/CRC.aar .../QueryResultPatientSetGenerator.java 96
      i2b2.war/CRC.aar .../QueryResultPatientSQLCountGenerat or.java 153
      i2b2.war/CRC.aar .../QueryResultPatientSQLCountGenerat or.java 169
      i2b2.war/CRC.aar .../QueryResultPatientVitalCdCountGene rator.java 69
      i2b2.war/CRC.aar .../QueryResultTypeSpringDao.java 114


      Attachments

        Activity

          People

            mem61 Mike Mendis
            rm302 Reeta Metta
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: