You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This commit was created on GitHub.com and signed with GitHub’s verified signature.
Changed
Maintenance changes.
The following scan rules now include example alert functionality for documentation generation purposes (Issue 6119):
Spring Actuator
XSLT Injection
XPath Injection
Fixed
Address false positives with Source Code Disclosure - CVE-2012-1823 scan rule, by not scanning binary responses and responses that already contain PHP source (Issue 8638).
Cross Site Scripting Rule false positives at medium threshold by matching the expected context (Issue 8640).