Skip to content

Active scanner rules (beta) version 58

Choose a tag to compare

@zapbot zapbot released this 04 Mar 14:13
· 2706 commits to main since this release
68f7096

Changed

  • Replace usage of CWE-200 for the Insecure HTTP Method scan rule (Issue 8714).
  • Include exception message of failed attacks in the Server Side Request Forgery scan rule.

Fixed

  • Address potential/theoretical reDoS issue in the Insecure HTTP Method scan rule.