escher-php
escher-php copied to clipboard
Library for HTTP request signing (PHP implementation)
SECURITY-1742 Co-authored-by: fqqdk
Hi, I found an issue, when the server (API server) behinds a proxy server, the generated signatures are not equals. It's because the Escher::authenticate() method absolutely not care with the...
Validating Host:Port should be checked. Possible problems are: - validateHost calls getServerName(), but serverVars['SERVER_NAME'] will not contain port number - if the server not running on port 80 or 443,...
A violation against the OSS Rules of Play has been detected. Rule ID: rl-vulnerability_alerts-1 Explanation: Are vulnerability alerts enabled? **No** Find more information at: https://sap.github.io/fosstars-rating-core/oss_rules_of_play_rating.html
A violation against the OSS Rules of Play has been detected. Rule ID: rl-reuse_tool-4 Explanation: Is it compliant with REUSE rules? **No** Find more information at: https://sap.github.io/fosstars-rating-core/oss_rules_of_play_rating.html
A violation against the OSS Rules of Play has been detected. Rule ID: rl-reuse_tool-3 Explanation: Is it registered in REUSE? **No** Find more information at: https://sap.github.io/fosstars-rating-core/oss_rules_of_play_rating.html
A violation against the OSS Rules of Play has been detected. Rule ID: rl-reuse_tool-1 Explanation: Does README mention REUSE? **No** Find more information at: https://sap.github.io/fosstars-rating-core/oss_rules_of_play_rating.html
A violation against the OSS Rules of Play has been detected. Rule ID: rl-reuse_tool-2 Explanation: Does it have LICENSES directory with licenses? **No** Find more information at: https://sap.github.io/fosstars-rating-core/oss_rules_of_play_rating.html