This section describes the CWE categories covered by HoundDog.ai. The scanner reports CWE-201, CWE-209, CWE-312, CWE-313, CWE-315, CWE-532, CWE-539, and CWE-1295 on its data sinks:
-
CWE-201: Insertion of Sensitive Information Into Sent Data - Remediation Guide
-
CWE-209: Generation of Error Message Containing Sensitive Information - Remediation Guide
-
CWE-210: Self-generated Error Message Containing Sensitive Information - Remediation (related background; not reported directly)
-
CWE-312: Cleartext Storage of Sensitive Information - Remediation Guide
-
CWE-313: Cleartext Storage in a File or on Disk - Remediation Guide
-
CWE-315: Cleartext Storage of Sensitive Information in a Cookie - Remediation
-
CWE-532: Insertion of Sensitive Information into Log File - Remediation Guide
-
CWE-539: Use of Persistent Cookies Containing Sensitive Information - Remediation
-
CWE-1295: Debug Messages Revealing Unnecessary Information (reported on the Standard Output sink)
