Missing HTTP Security Headers

Low
Open
Finding Details
Comprehensive information about this security finding

Description

The application is missing important security headers such as Content-Security-Policy, X-XSS-Protection, and X-Content-Type-Options, which could make it more vulnerable to various attacks.

Impact

Risk Rating

Low
CVSS Score: 3.7
Finding Information

ID

f4

Discovered

Last Updated

Assigned To

Bob Williams

Due Date

Not set

Actions
Related Links
View Assessment