Vulnerability Name
Classifications
Severity
No Script Block Detected with the Hash Value Declared in Content Security Policy (CSP)
ISO27001-A.14.2.5, OWASP 2013-A5, OWASP 2017-A6
Information
Nonce Usage Detected in Content Security Policy (CSP) Directive
ISO27001-A.14.2.5
Information
Scheme URI Detected in Content Security Policy (CSP) Directive
ISO27001-A.14.2.5
Information
Static Nonce Identified in Content Security Policy (CSP)
CWE-16, ISO27001-A.14.2.5, WASC-15, OWASP 2013-A5, OWASP 2017-A6
Information
Unsupported Hash Detected in Content Security Policy (CSP)
CWE-16, ISO27001-A.14.2.5, WASC-15, OWASP 2013-A5, OWASP 2017-A6
Information
Weak Nonce Detected in Content Security Policy (CSP) Declaration
CWE-330, ISO27001-A.14.2.5, WASC-16, OWASP 2013-A5, OWASP 2017-A6
Information
Wildcard Detected in Domain Portion of Content Security Policy (CSP) Directive
ISO27001-A.14.2.5
Information
Wildcard Detected in Port Portion of Content Security Policy (CSP) Directive
ISO27001-A.14.2.5
Information
Wildcard Detected in Scheme Portion of Content Security Policy (CSP) Directive
ISO27001-A.14.2.5
Information
data: Used in a Content Security Policy (CSP) Directive
ISO27001-A.14.2.5
Information
default-src Used in Content Security Policy (CSP)
ISO27001-A.14.2.5
Information