Github Pat

Description

The source code repository contains sensitive information: GitHub Personal Access Token

Weakness:

009 - Sensitive information in source code

Category: Information Collection

Detection Strategy

    Matches GitHub Personal Access Token patterns in source code and configuration files

Vulnerable code example

GITHUB_TOKEN=ghp_abcdefghijklmnopqrstuvwxyzABCDEFGH12
github_pat_11ABCDEFG0abcdefghijklmnopqrstuvwxyz1234567890ABCDE
gho_1234567890abcdefghijklmnopqrstuvwxyz12
ghs_1234567890abcdefghijklmnopqrstuvwxyz12