← Back to Baseline

MB-R223

HUMAN VERIFICATION REQUIRED ASVS 1.3.8 JNDI injection (when jndi is used)

MB-C16 ASVS Level 2 Contextual Human Assurance Medium

The application appropriately sanitizes untrusted input before use in Java Naming and Directory Interface (JNDI) queries and that JNDI is configured securely to prevent JNDI injection attacks.