-
Task
-
Status:
Resolved
-
Major
-
Resolution:
Fixed
-
None
-
-
None
-
Veracode security report 8/2020- , recommendation to fix i2b2-code to fix High Security flaws to be policy compliant
Module Name Compiler Operating Environment
i2b2.war JAVAC_8 Java J2SE 8
i2b2.war_htmljscode.veracodegen.htmla.js JAVASCRIPT_5_1 JavaScript
Module Location
i2b2.war /axis2-web/HappyAxis.jsp 453
i2b2.war/Ontology.a ar edu/.../dao/ConceptDao.java 1028
i2b2.war/Ontology.a ar .../CreateConceptXmlDao.java 151
i2b2.war/Workplace. aar edu/.../dao/FolderDao.java 851
i2b2.war/Workplace. aar edu/.../dao/FolderDao.java 854
i2b2.war/Workplace. aar edu/.../dao/FolderDao.java 1621
i2b2.war/CRC.aar .../QueryResultEncounterSetGenerator.ja va 113
i2b2.war/CRC.aar .../QueryResultGenerator.java 196
i2b2.war/CRC.aar .../QueryResultPatientAgeCountGenerat or.java 103
i2b2.war/CRC.aar .../QueryResultPatientGenderCountGene rator.java 68
i2b2.war/CRC.aar .../QueryResultPatientRaceCdCountGen erator.java 68
i2b2.war/CRC.aar .../QueryResultPatientSetGenerator.java 96
i2b2.war/CRC.aar .../QueryResultPatientSQLCountGenerat or.java 153
i2b2.war/CRC.aar .../QueryResultPatientSQLCountGenerat or.java 169
i2b2.war/CRC.aar .../QueryResultPatientVitalCdCountGene rator.java 69
i2b2.war/CRC.aar .../QueryResultTypeSpringDao.java 114
{"report":{"fcp":825.9000000003725,"ttfb":321.1000000014901,"pageVisibility":"visible","entityId":11682,"key":"jira.project.issue.view-issue","isInitial":true,"threshold":1000,"elementTimings":{},"userDeviceMemory":8,"userDeviceProcessors":16,"apdex":1,"journeyId":"05cea325-56bd-4653-9d55-ba85acdf7e41","navigationType":0,"readyForUser":884.4000000003725,"redirectCount":0,"resourceLoadedEnd":1366.5,"resourceLoadedStart":325.6000000014901,"resourceTiming":[{"duration":116.19999999925494,"initiatorType":"link","name":"https://community.i2b2.org/jira/s/7fd763ecdf5ed1f47fc4d22fa8382e97-CDN/4x9nqn/820011/16zrvj4/49fa3aa3d35a2cc689cbf274e66cc41a/_/download/contextbatch/css/_super/batch.css","startTime":325.6000000014901,"connectEnd":0,"connectStart":0,"domainLookupEnd":0,"domainLookupStart":0,"fetchStart":325.6000000014901,"redirectEnd":0,"redirectStart":0,"requestStart":0,"responseEnd":441.80000000074506,"responseStart":0,"secureConnectionStart":0},{"duration":116.09999999962747,"initiatorType":"link","name":"https://community.i2b2.org/jira/s/898b8076c5e82f53cd816ca393e45a56-CDN/4x9nqn/820011/16zrvj4/f614b50eeb842ebd1ea7ab2903699907/_/download/contextbatch/css/project.issue.navigator,jira.view.issue,jira.global,atl.general,-_super/batch.css?jira.create.linked.issue=true&richediton=true","startTime":325.80000000074506,"connectEnd":0,"connectStart":0,"domainLookupEnd":0,"domainLookupStart":0,"fetchStart":325.80000000074506,"redirectEnd":0,"redirectStart":0,"requestStart":0,"responseEnd":441.90000000037253,"responseStart":0,"secureConnectionStart":0},{"duration":153.09999999962747,"initiatorType":"script","name":"https://community.i2b2.org/jira/s/4c9c503fe98f210445831b0d7b0cdc33-CDN/4x9nqn/820011/16zrvj4/49fa3aa3d35a2cc689cbf274e66cc41a/_/download/contextbatch/js/_super/batch.js?locale=en-US","startTime":325.90000000037253,"connectEnd":325.90000000037253,"connectStart":325.90000000037253,"domainLookupEnd":325.90000000037253,"domainLookupStart":325.90000000037253,"fetchStart":325.90000000037253,"redirectEnd":0,"redirectStart":0,"requestStart":325.90000000037253,"responseEnd":479,"responseStart":479,"secureConnectionStart":325.90000000037253},{"duration":232.7000000011176,"initiatorType":"script","name":"https://community.i2b2.org/jira/s/694e598c1ae48b0f96655173631cd247-CDN/4x9nqn/820011/16zrvj4/f614b50eeb842ebd1ea7ab2903699907/_/download/contextbatch/js/project.issue.navigator,jira.view.issue,jira.global,atl.general,-_super/batch.js?jira.create.linked.issue=true&locale=en-US&richediton=true","startTime":326,"connectEnd":326,"connectStart":326,"domainLookupEnd":326,"domainLookupStart":326,"fetchStart":326,"redirectEnd":0,"redirectStart":0,"requestStart":326,"responseEnd":558.7000000011176,"responseStart":558.7000000011176,"secureConnectionStart":326},{"duration":234.5,"initiatorType":"script","name":"https://community.i2b2.org/jira/s/53f54e0ac3f00bb56b136b4d2fff2853-CDN/4x9nqn/820011/16zrvj4/aae1242f5fc81cc6a5bb8bc963ccda29/_/download/contextbatch/js/atl.global,-_super/batch.js?locale=en-US","startTime":326.1000000014901,"connectEnd":326.1000000014901,"connectStart":326.1000000014901,"domainLookupEnd":326.1000000014901,"domainLookupStart":326.1000000014901,"fetchStart":326.1000000014901,"redirectEnd":0,"redirectStart":0,"requestStart":326.1000000014901,"responseEnd":560.6000000014901,"responseStart":560.6000000014901,"secureConnectionStart":326.1000000014901},{"duration":236.19999999925494,"initiatorType":"script","name":"https://community.i2b2.org/jira/s/d41d8cd98f00b204e9800998ecf8427e-CDN/4x9nqn/820011/16zrvj4/1.0/_/download/batch/jira.webresources:calendar-localisation-moment/jira.webresources:calendar-localisation-moment.js","startTime":326.2000000011176,"connectEnd":326.2000000011176,"connectStart":326.2000000011176,"domainLookupEnd":326.2000000011176,"domainLookupStart":326.2000000011176,"fetchStart":326.2000000011176,"redirectEnd":0,"redirectStart":0,"requestStart":326.2000000011176,"responseEnd":562.4000000003725,"responseStart":562.4000000003725,"secureConnectionStart":326.2000000011176},{"duration":235.5,"initiatorType":"script","name":"https://community.i2b2.org/jira/s/d41d8cd98f00b204e9800998ecf8427e-CDN/4x9nqn/820011/16zrvj4/1.0/_/download/batch/jira.webresources:calendar-en/jira.webresources:calendar-en.js","startTime":326.2000000011176,"connectEnd":326.2000000011176,"connectStart":326.2000000011176,"domainLookupEnd":326.2000000011176,"domainLookupStart":326.2000000011176,"fetchStart":326.2000000011176,"redirectEnd":0,"redirectStart":0,"requestStart":326.2000000011176,"responseEnd":561.7000000011176,"responseStart":561.7000000011176,"secureConnectionStart":326.2000000011176},{"duration":245.40000000037253,"initiatorType":"link","name":"https://community.i2b2.org/jira/s/30748292e4ca68be6947d7969829384b-CDN/4x9nqn/820011/16zrvj4/4f66da484ef7d95a2a604d3ab014374c/_/download/contextbatch/css/jira.global.look-and-feel,-_super/batch.css","startTime":326.40000000037253,"connectEnd":0,"connectStart":0,"domainLookupEnd":0,"domainLookupStart":0,"fetchStart":326.40000000037253,"redirectEnd":0,"redirectStart":0,"requestStart":0,"responseEnd":571.8000000007451,"responseStart":0,"secureConnectionStart":0},{"duration":236.80000000074506,"initiatorType":"script","name":"https://community.i2b2.org/jira/rest/api/1.0/shortcuts/820011/766848d8ff8ea3676a80e44dfb51696a/shortcuts.js?context=issuenavigation&context=issueaction","startTime":326.5,"connectEnd":326.5,"connectStart":326.5,"domainLookupEnd":326.5,"domainLookupStart":326.5,"fetchStart":326.5,"redirectEnd":0,"redirectStart":0,"requestStart":326.5,"responseEnd":563.3000000007451,"responseStart":563.3000000007451,"secureConnectionStart":326.5},{"duration":223.09999999962747,"initiatorType":"link","name":"https://community.i2b2.org/jira/s/3ac36323ba5e4eb0af2aa7ac7211b4bb-CDN/4x9nqn/820011/16zrvj4/efa42a25652b26dfd802540c024826b3/_/download/contextbatch/css/com.atlassian.jira.projects.sidebar.init,-_super,-jira.view.issue,-project.issue.navigator/batch.css?jira.create.linked.issue=true&richediton=true","startTime":348.90000000037253,"connectEnd":0,"connectStart":0,"domainLookupEnd":0,"domainLookupStart":0,"fetchStart":348.90000000037253,"redirectEnd":0,"redirectStart":0,"requestStart":0,"responseEnd":572,"responseStart":0,"secureConnectionStart":0},{"duration":215,"initiatorType":"script","name":"https://community.i2b2.org/jira/s/8087506fefd02b4096991c90836b49f6-CDN/4x9nqn/820011/16zrvj4/efa42a25652b26dfd802540c024826b3/_/download/contextbatch/js/com.atlassian.jira.projects.sidebar.init,-_super,-jira.view.issue,-project.issue.navigator/batch.js?jira.create.linked.issue=true&locale=en-US&richediton=true","startTime":349.2000000011176,"connectEnd":349.2000000011176,"connectStart":349.2000000011176,"domainLookupEnd":349.2000000011176,"domainLookupStart":349.2000000011176,"fetchStart":349.2000000011176,"redirectEnd":0,"redirectStart":0,"requestStart":349.2000000011176,"responseEnd":564.2000000011176,"responseStart":564.2000000011176,"secureConnectionStart":349.2000000011176},{"duration":958.5,"initiatorType":"script","name":"https://community.i2b2.org/jira/s/d41d8cd98f00b204e9800998ecf8427e-CDN/4x9nqn/820011/16zrvj4/1.0/_/download/batch/jira.webresources:bigpipe-js/jira.webresources:bigpipe-js.js","startTime":358,"connectEnd":358,"connectStart":358,"domainLookupEnd":358,"domainLookupStart":358,"fetchStart":358,"redirectEnd":0,"redirectStart":0,"requestStart":358,"responseEnd":1316.5,"responseStart":1316.4000000003725,"secureConnectionStart":358},{"duration":994.3999999985099,"initiatorType":"script","name":"https://community.i2b2.org/jira/s/d41d8cd98f00b204e9800998ecf8427e-CDN/4x9nqn/820011/16zrvj4/1.0/_/download/batch/jira.webresources:bigpipe-init/jira.webresources:bigpipe-init.js","startTime":372.1000000014901,"connectEnd":372.1000000014901,"connectStart":372.1000000014901,"domainLookupEnd":372.1000000014901,"domainLookupStart":372.1000000014901,"fetchStart":372.1000000014901,"redirectEnd":0,"redirectStart":0,"requestStart":372.1000000014901,"responseEnd":1366.5,"responseStart":1366.5,"secureConnectionStart":372.1000000014901},{"duration":623.5,"initiatorType":"xmlhttprequest","name":"https://community.i2b2.org/jira/rest/webResources/1.0/resources","startTime":737.8000000007451,"connectEnd":737.8000000007451,"connectStart":737.8000000007451,"domainLookupEnd":737.8000000007451,"domainLookupStart":737.8000000007451,"fetchStart":737.8000000007451,"redirectEnd":0,"redirectStart":0,"requestStart":737.8000000007451,"responseEnd":1361.300000000745,"responseStart":1361.300000000745,"secureConnectionStart":737.8000000007451}],"fetchStart":0,"domainLookupStart":0,"domainLookupEnd":0,"connectStart":267,"connectEnd":294,"secureConnectionStart":281,"requestStart":294,"responseStart":321,"responseEnd":373,"domLoading":324,"domInteractive":1417,"domContentLoadedEventStart":1417,"domContentLoadedEventEnd":1458,"domComplete":1598,"loadEventStart":1598,"loadEventEnd":1599,"userAgent":"Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)","marks":[{"name":"bigPipe.sidebar-id.start","time":1370.5},{"name":"bigPipe.sidebar-id.end","time":1372.1000000014901},{"name":"bigPipe.activity-panel-pipe-id.start","time":1372.4000000003725},{"name":"bigPipe.activity-panel-pipe-id.end","time":1373.2000000011176},{"name":"activityTabFullyLoaded","time":1480.300000000745}],"measures":[],"correlationId":"a1efe89c9ee24c","effectiveType":"4g","downlink":9.1,"rtt":0,"serverDuration":64,"dbReadsTimeInMs":6,"dbConnsTimeInMs":8,"applicationHash":"0629dd8d260e3954ece49053e565d01dabe11609","experiments":[]}}