305 Downloads Updated 8 months ago
Updated 8 months ago
8 months ago
4602cfd04618 · 4.7GB
unisast
is a security-focused AI model developed to identify and remediate vulnerabilities in source code. Tailored for developers and security professionals, this model automates the detection of common security flaws such as XSS, SQL injections, and unsafe input handling. It ensures that code adheres to modern security standards while maintaining its original functionality.
Provide input in the following structured format:
The model returns:
Vulnerability Type: SQL Injection
File Location: `app/routes/login.js`
Problematic Code:
const query = `SELECT * FROM users WHERE username = '${username}' AND password = '${password}'`;
db.query(query, (err, result) => {
if (err) throw err;
console.log(result);
});
Vulnerability Description: User inputs are directly embedded in the SQL query, enabling SQL injection attacks.
const query = 'SELECT * FROM users WHERE username = ? AND password = ?';
db.query(query, [username, password], (err, result) => {
if (err) throw err;
console.log(result);
});
The following parameters are configured for unisast
:
</tool_call>
<|im_end|>