QID 570069
QID 570069: Error Response for `400`, `422` or `4XX` Not Defined
When there is an invalid request web server will respond with a 400, 422 or 4XX response code. Error responses for these codes need to be defined so the appropriate message can be informed to the user on their invalid request. Analysis of the swagger file resulted in detecting missing error responses for the invalid request codes.
When user submits an invalid request they do not have clarity from the API. The lack of definition for invalid request response codes results in a warning.
Solution
Review the end points to ensure that responses for 400, 422, 4XX are defined in the schema.
Vendor References
CVEs related to QID 570069
Software Advisories
| Advisory ID | Software | Component | Link |
|---|