Update and rename cloudflare-rocketloader-htmli.yaml to cloudflare-rocketloader-htmli.yaml

patch-2
Ritik Chaddha 2024-05-07 17:39:44 +05:30 committed by GitHub
parent 9f1bf33ed8
commit 5c3b218ef3
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
1 changed files with 2 additions and 2 deletions

View File

@ -3,7 +3,7 @@ id: cloudflare-rocketloader-htmli
info:
name: Cloudflare Rocket Loader - HTML Injection
author: j3ssie
severity: low
severity: unknown
description: |
The Rocket Loader feature in Cloudflare allow attackers to inject arbitrary HTML into the website. This can be used to perform various attacks such as phishing, defacement, etc.
remediation: Disable the rocket loader or Add a CSP header to fix this issue.
@ -39,4 +39,4 @@ http:
- type: status
status:
- 200
# digest: 490a004630440220078dae8c97372b931bd7435693b67c204a81c9411fcbe20e1fc657d63704bdff02200cc52e3711d11352ce0f241c9cc79a6371d05c0070ec19166837dfcea4382ead:922c64590222798bb761d5b6d8e72950
# digest: 490a004630440220078dae8c97372b931bd7435693b67c204a81c9411fcbe20e1fc657d63704bdff02200cc52e3711d11352ce0f241c9cc79a6371d05c0070ec19166837dfcea4382ead:922c64590222798bb761d5b6d8e72950