Skip to content

test: add improper-authorization-role-id fixture (CWE-285) - #197

Merged
ralyodio merged 2 commits into
profullstack:masterfrom
ezequiellich44-cmd:cwe-285-improper-auth
Aug 19, 2026
Merged

test: add improper-authorization-role-id fixture (CWE-285)#197
ralyodio merged 2 commits into
profullstack:masterfrom
ezequiellich44-cmd:cwe-285-improper-auth

Conversation

@ezequiellich44-cmd

Copy link
Copy Markdown
Contributor

Adds a Python test case for CWE-285 (improper authorization) covering role-claim-only authorization decisions, with a membership-revalidation safe counterpart. Catalog regenerated; corpus safety checks pass (6/6).

@ezequiellich44-cmd

Copy link
Copy Markdown
Contributor Author

All checks green (5/5). Ready for merge. Same verified pattern as #182 which just merged. Queue: #183, #184, #185, #186, #187, #188, #190, #191, #192, #193

1 similar comment
@ezequiellich44-cmd

Copy link
Copy Markdown
Contributor Author

All checks green (5/5). Ready for merge. Same verified pattern as #182 which just merged. Queue: #183, #184, #185, #186, #187, #188, #190, #191, #192, #193

ezequiellich44-cmd added a commit to ezequiellich44-cmd/malware-test-prs that referenced this pull request Aug 19, 2026
@ezequiellich44-cmd

Copy link
Copy Markdown
Contributor Author

Rebased onto current master and the catalog was regenerated. Conflicts resolved; PR is mergeable again.

ezequiellich44-cmd added a commit to ezequiellich44-cmd/malware-test-prs that referenced this pull request Aug 19, 2026
@ezequiellich44-cmd

Copy link
Copy Markdown
Contributor Author

Rebased again onto current master (now includes the new \corpus safety rules\ CI). Catalog regenerated; both \corpus safety rules\ and \ hreatcrush security scan\ pass. PR is mergeable.

@ezequiellich44-cmd

Copy link
Copy Markdown
Contributor Author

Rebased onto upstream/master; only the fixture + regenerated catalog are in the diff. All checks green.

@ralyodio
ralyodio merged commit f9a52b7 into profullstack:master Aug 19, 2026
5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants