ZAP Full Scan Report
Opened this issue · 3 comments
github-actions commented
- Site: https://all-sorns.app.cloud.gov
New Alerts- Anti-CSRF Tokens Check [20012] total: 1:
- Cookie Slack Detector [90027] total: 1:
- Re-examine Cache-control Directives [10015] total: 1:
- Storable and Cacheable Content [10049] total: 2:
- User Agent Fuzzer [10104] total: 8:
View the following link to download the report.
RunnerID:6521613770
github-actions commented
- Site: https://all-sorns.app.cloud.gov
New Alerts- Absence of Anti-CSRF Tokens [10202] total: 2:
- CSP: Wildcard Directive [10055] total: 5:
- Content Security Policy (CSP) Header Not Set [10038] total: 1:
- Proxy Disclosure [40025] total: 25:
- Sub Resource Integrity Attribute Missing [90003] total: 8:
- Cross-Domain JavaScript Source File Inclusion [10017] total: 8:
- Dangerous JS Functions [10110] total: 2:
- Permissions Policy Header Not Set [10063] total: 7:
- Information Disclosure - Suspicious Comments [10027] total: 2:
- Modern Web Application [10109] total: 4:
- Session Management Response Identified [10112] total: 7:
View the following link to download the report.
RunnerID:6601331385
github-actions commented
- Site: https://all-sorns.app.cloud.gov
New Alerts
View the following link to download the report.
RunnerID:7235962823
github-actions commented
- Site: https://all-sorns.app.cloud.gov
Resolved Alerts- SQL Injection - SQLite [40024] total: 1:
View the following link to download the report.
RunnerID:7312142770