Skip to content

Passive scanner rules version 37

Choose a tag to compare

@zapbot zapbot released this 01 Dec 09:46
· 8221 commits to main since this release
c766466

Added

  • OWASP Top Ten 2021/2017 mappings for Insecure Authentication scan rule.
  • OWASP Web Security Testing Guide v4.2 mappings where applicable.

Changed

  • Timestamp Disclosure scan rule now excludes values in "Expect-CT" headers (Issue 6725), as well as zero strings (Issue 6761).
  • Dependency updates.
  • Maintenance changes.