Catalog UI Policy rules

The below table shows the list of ServiceNow Catalog UI policy rules that are checked by Quality Clouds.

Description

Severity

Area of impact

Possible use of private data - Catalog UI Policy scriptFalseWarningSecurity
Possible use of private data - Catalog UI Policy scriptTrueWarningSecurity
JavaScript - Avoid use of Function Constructors - Catalog UI Policy scriptFalseHighSecurity
JavaScript - Avoid use of Function Constructors - Catalog UI Policy scriptTrueHighSecurity
JavaScript - Avoid making connections on unsafe protocols - Catalog UI Policy scriptFalseWarningSecurity
JavaScript - Avoid making connections on unsafe protocols - Catalog UI Policy scriptTrueWarningSecurity
JavaScript - Optimize Loops - Catalog UI Policy scriptFalseWarningPerformance
JavaScript - Optimize Loops - Catalog UI Policy scriptTrueWarningPerformance
JavaScript - Avoid unrestricted targetOrigin on cross-domain messaging - Catalog UI Policy scriptFalseHighSecurity
JavaScript - Avoid unrestricted targetOrigin on cross-domain messaging - Catalog UI Policy scriptTrueHighSecurity
JavaScript - Avoid use of debugger statements - Catalog UI Policy scriptFalseHighSecurity
JavaScript - Avoid use of debugger statements - Catalog UI Policy scriptTrueHighSecurity
JavaScript - Avoid use of WebDB - Catalog UI Policy scriptFalseHighSecurity
JavaScript - Avoid use of WebDB - Catalog UI Policy scriptTrueHighSecurity
JavaScript - Use === comparison - Catalog UI Policy scriptFalseWarningManageability
JavaScript - Use === comparison - Catalog UI Policy scriptTrueWarningManageability
Synchronous AJAX call in Catalog UI Policies - scriptFalseHighPerformance
Synchronous AJAX call in Catalog UI Policies - scriptTrueHighPerformance
Catalog UI Policies using GlideRecord - scriptFalseHighPerformance
Catalog UI Policies using GlideRecord - scriptTrueHighPerformance
Catalog UI Policies with hard-coded sys_ids - scriptFalseMediumManageability
Catalog Policies with hard-coded sys_ids - scriptTrueMediumManageability
Document Object Model (DOM) manipulation in Catalog UI Policies - scriptFalseHighManageability
Document Object Model (DOM) manipulation in Catalog UI Policies - scriptTrue
Manageability

Modified Out of the Box Element

WarningScalability
Dot walking to sys_id - Catalog UI Policy scriptTrueMediumPerformance
Dot walking to sys_id - Catalog UI Policy scriptFalseMediumPerformance
Usage of g_form.setValue on a reference field without displayValue - Catalog UI Policy scriptTrueHighPerformance
Usage of g_form.setValue on a reference field without displayValue - Catalog UI Policy scriptFalseHighPerformance




Last modified on Mar 25, 2021