Research Article

A Server-Side JavaScript Security Architecture for Secure Integration of Third-Party Libraries

Table 4

Summary of the reported vulnerabilities of the Node Security Project and their corresponding type of policy. About 95% are in scope for NODESENTRY.

Type of policy # Vulnerabilities involved

① Input filtering 31 (42%)
② Output filtering 7 (10%)
③ Additional logic 12 (16%)
④ Denial-of-Service filtering 19 (26%)
⑤ Out of scope 4 (5%)