...
Issue | A07:2021 – Identification and Authentication Failures Account Enumeration Possible Via Login Page | ||||||
Priority |
| ||||||
EP Number | SD-7695 | ||||||
Resolution: | Amend the warning text when entering an incorrect username/password from bold to normal |
Issue | Security Misconfiguration - Missing Sub resource Integrity For External Scripts | ||||||
Priority |
| ||||||
EP Number | SD-7696 | ||||||
Resolution: |
Issue
A06:2021 – Vulnerable and Outdated Components -Vulnerable and Outdated Components (possibly dev only)
Priority
Status | ||||
---|---|---|---|---|
|
EP Number
SD-7697
Resolution:
Issue
A05 Security Misconfiguration – Stack Trace Observed (dev site only)
Priority
Status | ||||
---|---|---|---|---|
|
EP Number
SD-7699
Resolution:
This only relates to the dev site
Issue
A05 Security Misconfiguration - Laravel Debugging Enabled (dev site only)
Priority
Status | ||||
---|---|---|---|---|
|
EP Number
SD-7702
Resolution:
This only relates to the dev site
Issue
A05 - Security Misconfiguration - Stack Trace Available to Anonymous Users (dev site only)
Priority
Status | ||||
---|---|---|---|---|
|
EP Number
SD-7703
Resolution:
Declined - we cannot add an SRI check here to validate the content as Google necessitate implicit trust of their content. |
Issue | A02 - Cryptographic Failures – Weak Ciphers Within TLSv1.2 Supported | ||||||
Priority |
| ||||||
EP Number | SD-7704 | ||||||
Resolution: |