Skip to content

Passive scanner rules version 43

Choose a tag to compare

@zapbot zapbot released this 15 Sep 10:29
· 6905 commits to main since this release
a5c30a6

Changed

  • Reduce Cache Control scan rule confidence to Low, and add new reference (Issue 6446).
  • Added new Custom Payloads alert tag to the example alerts of the Username IDOR and Application Error scan rules.
  • Maintenance changes.
  • The Timestamp Disclosure scan rule is now scoped to a 10 year range with a cap at the Y2038 rollover point (Issue 6741).
  • The Content Security Policy Header Not Set scan rule will no longer alert if CSP is specified via META tag (Issue 7303).