GSA-TTS/all_sorns

ZAP Full Scan Report

Closed this issue · 32 comments

View the following link to download the report.
RunnerID:2288375358

View the following link to download the report.
RunnerID:2307564065

View the following link to download the report.
RunnerID:2386159159

View the following link to download the report.
RunnerID:2386289050

View the following link to download the report.
RunnerID:2441761561

View the following link to download the report.
RunnerID:2482138072

View the following link to download the report.
RunnerID:2522625842

View the following link to download the report.
RunnerID:2603719591

View the following link to download the report.
RunnerID:2684111922

View the following link to download the report.
RunnerID:2762388263

View the following link to download the report.
RunnerID:2811193710

View the following link to download the report.
RunnerID:2854315535

View the following link to download the report.
RunnerID:2897045119

View the following link to download the report.
RunnerID:3030406625

View the following link to download the report.
RunnerID:3353964541

View the following link to download the report.
RunnerID:3402747521

View the following link to download the report.
RunnerID:3453652165

View the following link to download the report.
RunnerID:3667134407

View the following link to download the report.
RunnerID:4273092704

View the following link to download the report.
RunnerID:4395462687

View the following link to download the report.
RunnerID:4522513688

View the following link to download the report.
RunnerID:4586601984

View the following link to download the report.
RunnerID:4776115427

  • Site: https://all-sorns.app.cloud.gov
    Resolved Alerts
    • Absence of Anti-CSRF Tokens [10202] total: 2:
    • Anti-CSRF Tokens Check [20012] total: 2:
    • CSP: Wildcard Directive [10055] total: 5:
    • Content Security Policy (CSP) Header Not Set [10038] total: 1:
    • Sub Resource Integrity Attribute Missing [90003] total: 8:
    • Cookie Slack Detector [90027] total: 4:
    • Cross-Domain JavaScript Source File Inclusion [10017] total: 8:
    • Dangerous JS Functions [10110] total: 2:
    • Permissions Policy Header Not Set [10063] total: 7:
    • Cookie Slack Detector [90027] total: 20:
    • Information Disclosure - Suspicious Comments [10027] total: 2:
    • Modern Web Application [10109] total: 4:
    • Re-examine Cache-control Directives [10015] total: 5:
    • Session Management Response Identified [10112] total: 7:
    • User Agent Fuzzer [10104] total: 53:

View the following link to download the report.
RunnerID:6399186578

  • Site: https://all-sorns.app.cloud.gov
    Resolved Alerts
    • Absence of Anti-CSRF Tokens [10202] total: 2:
    • Anti-CSRF Tokens Check [20012] total: 2:
    • CSP: Wildcard Directive [10055] total: 5:
    • Content Security Policy (CSP) Header Not Set [10038] total: 1:
    • Sub Resource Integrity Attribute Missing [90003] total: 8:
    • Cookie Slack Detector [90027] total: 4:
    • Cross-Domain JavaScript Source File Inclusion [10017] total: 8:
    • Dangerous JS Functions [10110] total: 2:
    • Permissions Policy Header Not Set [10063] total: 7:
    • Cookie Slack Detector [90027] total: 20:
    • Information Disclosure - Suspicious Comments [10027] total: 2:
    • Modern Web Application [10109] total: 4:
    • Re-examine Cache-control Directives [10015] total: 5:
    • Session Management Response Identified [10112] total: 7:
    • User Agent Fuzzer [10104] total: 53:

View the following link to download the report.
RunnerID:6399249278