Skip to content

Conversation

@Ryouzanpaku
Copy link
Contributor

No description provided.

GreatG0ose and others added 30 commits September 6, 2023 11:58
Co-authored-by: Vladislav Lipianin <>
…-types

Add null for HasAccountInformation properties setters
…-file-headers

CC-567/remove-licence-info-from-file-headers
…sofort-type

[CC-534] Add bank account information to Sofort type.
Ryouzanpaku and others added 13 commits November 3, 2023 09:25
…nt-ID-should-be-configurable

Cc 129/apple pay example merchant id should be configurable
Release-PHP-SDK-3] Adjust keypair used for basket v1 tests.
Release-PHP-SDK-3] Adjust paylater invoice cancel test because partial reversal is now supported by API.
Release-PHP-SDK-3] Adjust paylater invoice cancel test because partial reversal is now supported by API.
Release-PHP-SDK-3] Add version summary/highlights.
Release-PHP-SDK-3] Merge remote-tracking branch 'origin/CC-584/Release-PHP-SDK-3.4.0' into CC-584/Release-PHP-SDK-3.4.0

# Conflicts:
#	test/integration/TransactionTypes/PaylaterCancelTest.php
Release-PHP-SDK-3] cleanup.
Release-PHP-SDK-3] Add missing use statement for unzer invoice example.
Release-PHP-SDK-3] mark direct debit example as deprecated.
Release-PHP-SDK-3] Add riskdata also to paypage examples.
Release-PHP-SDK-3] code style.
@github-actions
Copy link

github-actions bot commented Nov 6, 2023

Logo
Checkmarx One – Scan Summary & Detailsd2373e33-63ac-4c37-a915-4d415149051f

Fixed Issues

Severity Issue Source File / Package
HIGH Client_DOM_Stored_XSS /examples/Applepay/index.php: 187
HIGH Client_DOM_Stored_XSS /examples/Applepay/index.php: 166
HIGH Stored_XSS /src/Unzer.php: 402
HIGH Stored_XSS /src/Unzer.php: 402
HIGH Stored_XSS /src/Unzer.php: 402
HIGH Stored_XSS /examples/InstallmentSecured/confirm.php: 61
HIGH Stored_XSS /examples/InstallmentSecured/confirm.php: 61
HIGH Stored_XSS /examples/InstallmentSecured/confirm.php: 61
HIGH Stored_XSS /src/Services/ResourceService.php: 396
HIGH Stored_XSS /src/Unzer.php: 402
HIGH Stored_XSS /examples/InstallmentSecured/confirm.php: 61
MEDIUM Header_Injection /examples/Applepay/merchantvalidation.php: 65
MEDIUM Open_Redirect /examples/PayPalRecurring/Controller.php: 54
MEDIUM Privacy_Violation /src/Resources/Payment.php: 153
LOW Client_Hardcoded_Domain /examples/Backend/Failure.php: 33
LOW Client_Hardcoded_Domain /examples/Backend/Failure.php: 35
LOW Client_Hardcoded_Domain /examples/Backend/ManagePayment.php: 44
LOW Client_Hardcoded_Domain /examples/Backend/ManagePayment.php: 46
LOW Client_Hardcoded_Domain /examples/Backend/ManagePayment.php: 49
LOW Client_Hardcoded_Domain /examples/Failure.php: 30
LOW Client_Hardcoded_Domain /examples/Failure.php: 32
LOW Client_Hardcoded_Domain /examples/Pending.php: 30
LOW Client_Hardcoded_Domain /examples/Pending.php: 32
LOW Client_Hardcoded_Domain /examples/Success.php: 44
LOW Client_Hardcoded_Domain /examples/Success.php: 46
LOW Client_Hardcoded_Domain /examples/PaylaterInstallment/index.php: 37
LOW Client_Hardcoded_Domain /examples/PaylaterInstallment/index.php: 42
LOW Client_Hardcoded_Domain /examples/Alipay/index.php: 37
LOW Client_Hardcoded_Domain /examples/Alipay/index.php: 42
LOW Client_Hardcoded_Domain /examples/Applepay/index.php: 37
LOW Client_Hardcoded_Domain /examples/Applepay/index.php: 42
LOW Client_Hardcoded_Domain /examples/Bancontact/index.php: 37
LOW Client_Hardcoded_Domain /examples/Bancontact/index.php: 42
LOW Client_Hardcoded_Domain /examples/BankTransfer/index.php: 37
LOW Client_Hardcoded_Domain /examples/BankTransfer/index.php: 42
LOW Client_Hardcoded_Domain /examples/Card/index.php: 37
LOW Client_Hardcoded_Domain /examples/Card/index.php: 42
LOW Client_Hardcoded_Domain /examples/CardExtended/index.php: 37
LOW Client_Hardcoded_Domain /examples/CardExtended/index.php: 42
LOW Client_Hardcoded_Domain /examples/CardRecurring/index.php: 37
LOW Client_Hardcoded_Domain /examples/CardRecurring/index.php: 42
LOW Client_Hardcoded_Domain /examples/EmbeddedPayPage/index.php: 38
LOW Client_Hardcoded_Domain /examples/EmbeddedPayPage/index.php: 39
LOW Client_Hardcoded_Domain /examples/EmbeddedPayPage/index.php: 42
LOW Client_Hardcoded_Domain /examples/EmbeddedPayPage/index.php: 43
LOW Client_Hardcoded_Domain /examples/EPSCharge/index.php: 37
LOW Client_Hardcoded_Domain /examples/EPSCharge/index.php: 42
LOW Client_Hardcoded_Domain /examples/Giropay/index.php: 37
LOW Client_Hardcoded_Domain /examples/Giropay/index.php: 42
LOW Client_Hardcoded_Domain /examples/HostedPayPage/index.php: 38
LOW Client_Hardcoded_Domain /examples/HostedPayPage/index.php: 43
LOW Client_Hardcoded_Domain /examples/IDeal/index.php: 37
LOW Client_Hardcoded_Domain /examples/IDeal/index.php: 42
LOW Client_Hardcoded_Domain /examples/index.php: 48
LOW Client_Hardcoded_Domain /examples/index.php: 51
LOW Client_Hardcoded_Domain /examples/index.php: 55
LOW Client_Hardcoded_Domain /examples/InstallmentSecured/confirm.php: 85
LOW Client_Hardcoded_Domain /examples/InstallmentSecured/confirm.php: 89
LOW Client_Hardcoded_Domain /examples/InstallmentSecured/index.php: 37
LOW Client_Hardcoded_Domain /examples/InstallmentSecured/index.php: 42
LOW Client_Hardcoded_Domain /examples/Invoice/index.php: 40
LOW Client_Hardcoded_Domain /examples/InvoiceSecured/index.php: 38
LOW Client_Hardcoded_Domain /examples/InvoiceSecured/index.php: 43
LOW Client_Hardcoded_Domain /examples/Klarna/index.php: 37
LOW Client_Hardcoded_Domain /examples/Klarna/index.php: 42
LOW Client_Hardcoded_Domain /examples/PaylaterInvoice/index.php: 38
LOW Client_Hardcoded_Domain /examples/PaylaterInvoice/index.php: 43
LOW Client_Hardcoded_Domain /examples/PayPal/index.php: 37
LOW Client_Hardcoded_Domain /examples/PayPal/index.php: 42
LOW Client_Hardcoded_Domain /examples/PayPalRecurring/index.php: 37
LOW Client_Hardcoded_Domain /examples/PayPalRecurring/index.php: 42
LOW Client_Hardcoded_Domain /examples/PostFinanceCard/index.php: 37
LOW Client_Hardcoded_Domain /examples/PostFinanceCard/index.php: 42
LOW Client_Hardcoded_Domain /examples/PostFinanceEfinance/index.php: 37
LOW Client_Hardcoded_Domain /examples/PostFinanceEfinance/index.php: 42
LOW Client_Hardcoded_Domain /examples/Prepayment/index.php: 40
LOW Client_Hardcoded_Domain /examples/Przelewy24/index.php: 37
LOW Client_Hardcoded_Domain /examples/Przelewy24/index.php: 42
LOW Client_Hardcoded_Domain /examples/SepaDirectDebitSecured/index.php: 37
LOW Client_Hardcoded_Domain /examples/SepaDirectDebitSecured/index.php: 42
LOW Client_Hardcoded_Domain /examples/Sofort/index.php: 37
LOW Client_Hardcoded_Domain /examples/Sofort/index.php: 42
LOW Client_Hardcoded_Domain /examples/Webhooks/fetchAll.php: 60
LOW Client_Hardcoded_Domain /examples/Webhooks/fetchAll.php: 64
LOW Client_Hardcoded_Domain /examples/Webhooks/index.php: 67
LOW Client_Hardcoded_Domain /examples/Webhooks/index.php: 71
LOW Client_Hardcoded_Domain /examples/Webhooks/removeAll.php: 65
LOW Client_Hardcoded_Domain /examples/Webhooks/removeAll.php: 69
LOW Client_Hardcoded_Domain /examples/Wechatpay/index.php: 37
LOW Client_Hardcoded_Domain /examples/Wechatpay/index.php: 42
LOW Trust_Boundary_Violation_in_Session_Variables /examples/BankTransfer/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/BankTransfer/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Card/Controller.php: 55
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Wechatpay/Controller.php: 56
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Wechatpay/Controller.php: 56
LOW Trust_Boundary_Violation_in_Session_Variables /examples/BankTransfer/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Giropay/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Giropay/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Wechatpay/Controller.php: 56
LOW Trust_Boundary_Violation_in_Session_Variables /examples/CardExtended/Controller.php: 55
LOW Trust_Boundary_Violation_in_Session_Variables /examples/EPSCharge/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Sofort/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Giropay/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/EPSCharge/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Sofort/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Applepay/Controller.php: 51
LOW Trust_Boundary_Violation_in_Session_Variables /examples/IDeal/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/IDeal/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Przelewy24/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/CardExtended/Controller.php: 55
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Przelewy24/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/EPSCharge/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Sofort/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Applepay/Controller.php: 51
LOW Trust_Boundary_Violation_in_Session_Variables /examples/IDeal/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/InvoiceSecured/Controller.php: 60
LOW Trust_Boundary_Violation_in_Session_Variables /examples/InvoiceSecured/Controller.php: 61
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Alipay/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/SepaDirectDebitSecured/Controller.php: 56
LOW Trust_Boundary_Violation_in_Session_Variables /examples/SepaDirectDebitSecured/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Alipay/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Bancontact/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Przelewy24/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Bancontact/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/SepaDirectDebitSecured/Controller.php: 57
LOW Trust_Boundary_Violation_in_Session_Variables /examples/SepaDirectDebitSecured/Controller.php: 56
LOW Trust_Boundary_Violation_in_Session_Variables /examples/CardRecurring/RecurringPaymentController.php: 56
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Alipay/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Bancontact/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/InvoiceSecured/Controller.php: 61
LOW Trust_Boundary_Violation_in_Session_Variables /examples/InvoiceSecured/Controller.php: 60
LOW Trust_Boundary_Violation_in_Session_Variables /examples/InvoiceSecured/Controller.php: 61
LOW Trust_Boundary_Violation_in_Session_Variables /examples/InvoiceSecured/Controller.php: 60
LOW Trust_Boundary_Violation_in_Session_Variables /examples/Card/Controller.php: 55
LOW Trust_Boundary_Violation_in_Session_Variables /examples/CardRecurring/RecurringPaymentController.php: 56
LOW Trust_Boundary_Violation_in_Session_Variables /examples/PayPalRecurring/Controller.php: 54
LOW Trust_Boundary_Violation_in_Session_Variables /examples/CardRecurring/Controller.php: 56
LOW Unsafe_Use_Of_Target_blank /examples/PaylaterInstallment/index.php: 47
LOW Unsafe_Use_Of_Target_blank /examples/Wechatpay/index.php: 52
LOW Unsafe_Use_Of_Target_blank /examples/Sofort/index.php: 47
LOW Unsafe_Use_Of_Target_blank /examples/SepaDirectDebitSecured/index.php: 47
LOW Unsafe_Use_Of_Target_blank /examples/Przelewy24/index.php: 47
LOW Unsafe_Use_Of_Target_blank /examples/PostFinanceEfinance/index.php: 47
LOW Unsafe_Use_Of_Target_blank /examples/PostFinanceCard/index.php: 47
LOW Unsafe_Use_Of_Target_blank /examples/PayPal/index.php: 53
LOW Unsafe_Use_Of_Target_blank /examples/PayPal/index.php: 51
LOW Unsafe_Use_Of_Target_blank /examples/PayPalRecurring/index.php: 53
LOW Unsafe_Use_Of_Target_blank /examples/PayPalRecurring/index.php: 51
LOW Unsafe_Use_Of_Target_blank /examples/PaylaterInvoice/index.php: 48
LOW Unsafe_Use_Of_Target_blank /examples/Klarna/index.php: 46
LOW Unsafe_Use_Of_Target_blank /examples/InvoiceSecured/index.php: 48
LOW Unsafe_Use_Of_Target_blank /examples/InstallmentSecured/index.php: 47
LOW Unsafe_Use_Of_Target_blank /examples/index.php: 93
LOW

More results are available on AST platform

@Ryouzanpaku Ryouzanpaku merged commit 632ce4c into master Nov 6, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Development

Successfully merging this pull request may close these issues.

4 participants