Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update: [XML External Entity Prevention Cheat Sheet] #1354

Open
wittjoe1 opened this issue Mar 6, 2024 · 2 comments
Open

Update: [XML External Entity Prevention Cheat Sheet] #1354

wittjoe1 opened this issue Mar 6, 2024 · 2 comments
Labels
ACK_OBTAINED Issue acknowledged from core team so work can be done to fix it. HELP_WANTED Issue for which help is wanted to do the job. UPDATE_CS Issue about the update/refactoring of a existing cheat sheet.

Comments

@wittjoe1
Copy link
Contributor

wittjoe1 commented Mar 6, 2024

What is missing or needs to be updated?

The chapter on .net refers to version 4.5 - nobody should really be using that anymore. It contains references to dotnet_security_unit_testing - this project was created over 7 years ago. Is this still up to date or would it not be better to exclude it in order to avoid a false sense of security?

The chapter on iOS is "up to date" with iOS 6 from 2012

How should this be resolved?

Can you please check whether some of the content is now obsolete?
As I am neither a specialist for .net nor for iOS, this should not be my cup of tea...

@wittjoe1 wittjoe1 added ACK_WAITING Issue waiting acknowledgement from core team before to start the work to fix it. HELP_WANTED Issue for which help is wanted to do the job. UPDATE_CS Issue about the update/refactoring of a existing cheat sheet. labels Mar 6, 2024
@jmanico
Copy link
Member

jmanico commented Mar 6, 2024

We accept PR's for sure. Thank you for pointing this out. Can we just remove that old content for now? What do you suggest?

@wittjoe1
Copy link
Contributor Author

wittjoe1 commented Mar 6, 2024

Unfortunatly i really don't know - im just translating this Cheat Sheet for my company using DeepL and Brain.exe when i recognized, that these passages are likely out of date (just my 2 cents)...

@mackowski mackowski added ACK_OBTAINED Issue acknowledged from core team so work can be done to fix it. and removed ACK_WAITING Issue waiting acknowledgement from core team before to start the work to fix it. labels Mar 11, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
ACK_OBTAINED Issue acknowledged from core team so work can be done to fix it. HELP_WANTED Issue for which help is wanted to do the job. UPDATE_CS Issue about the update/refactoring of a existing cheat sheet.
Projects
None yet
Development

No branches or pull requests

3 participants