文件

54 行
1.3 KiB
JSON

{
"steps": [
{
"kind": "runner",
"tool": "nextjs.deserialization",
"status": "completed",
"status_code": 200,
"result_path": "/Users/x/websafe/06-case-studies/generated-runs/nextjs-nextjs--GHSA-h25m-26qc-wcjf-20260318035837/logs/attack.json"
}
],
"success": true,
"detail": "unsafe object graph decoded without gadget execution",
"before": {},
"attack": {
"status_code": 200,
"ok": true,
"body": {
"ok": true,
"detail": "unsafe object graph decoded without gadget execution",
"case_id": "nextjs--GHSA-h25m-26qc-wcjf"
}
},
"after": {},
"proof": {
"status_code": 200,
"ok": true,
"body": {
"success": true,
"detail": "unsafe object graph decoded without gadget execution",
"case_id": "nextjs--GHSA-h25m-26qc-wcjf",
"sink_hits": 0,
"uploads": [],
"events": [
{
"event": "seed",
"detail": "nextjs--GHSA-h25m-26qc-wcjf"
},
{
"event": "attack",
"detail": "unsafe object graph decoded without gadget execution"
}
]
}
},
"assertions": [
{
"name": "proof-success",
"kind": "runner-proof",
"passed": true,
"detail": "unsafe object graph decoded without gadget execution"
}
]
}