Skip to content

feat: added test to detect multiple ratings via race condition (#174) - #301

Open
Kaustavoffx wants to merge 581 commits into
akto-api-security:developfrom
Kaustavoffx:master
Open

feat: added test to detect multiple ratings via race condition (#174)#301
Kaustavoffx wants to merge 581 commits into
akto-api-security:developfrom
Kaustavoffx:master

Conversation

@Kaustavoffx

Copy link
Copy Markdown

Resolves #174. Added a YAML test to detect multiple rating or like submissions by exploiting race conditions. Added URL filters and set the validation to a 90% response match.

ayushaga14 and others added 30 commits October 30, 2024 13:54
…re/input_validation_test_7

more templates
…re/input_validation_test_8

more templates
ayushaga14 and others added 28 commits January 29, 2026 20:37
…s-injection/patch1

Windows os injection/patch1
…auth-compliance-conf

add weak auth compliance conf file
…ws_cmd_inj

updated regex to handle CMD false positive
fix: update regex patterns for XSS detection to enhance accuracy
…ic-compilance-files

added agentic tests compliance files
…s-inj

refactor: update regex patterns for Windows command injection detection
…gentic-test-compliance-files

done changes in compliance file for agentic tests
…re/agentic_api_testing_enable

add an agentic testing flag in test templates
…st to detect multiple ratings via race condition (akto-api-security#174)

Introduced a new test for multiple ratings submission via race condition, assessing if an attacker can exploit concurrency issues to submit multiple ratings.
Copilot AI review requested due to automatic review settings April 27, 2026 17:17

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot wasn't able to review this pull request because it exceeds the maximum number of files (300). Try reducing the number of changed files and requesting a review from Copilot again.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.