(JS-S1004) Disable `X-POWERED-BY` HTTP header
Opened this issue · 0 comments
sayak-sarkar commented
Description
Disclosing technology fingerprints allows an attacker to gather information about the technologies used to develop the web application and to perform relevant security assessments more quickly (like the identification of known vulnerable components). It's recommended to not disclose technologies used on a website, with X-POWERED-BY
HTTP header. In addition, it's …
Occurrences
There are 3 occurrences of this issue in the repository.
See all occurrences on DeepSource → deepsource.io/gh/1-Platform/one-platform/issue/JS-S1004/occurrences/