-
**Describe the bug**
After solving that issue: https://github.com/zaproxy/zaproxy/issues/7004
There will be no "ZAP IO Error" with the exception visible in the response in specific ActiveScan with O…
-
### Describe the bug
Since the update to 2.12.0 the API call _api.alert.alerts has not been working as it should.
![image](https://user-images.githubusercontent.com/38797100/202420576-056d9b83-cf3…
-
for now we have supported standalone vulnerabilities but when it comes to vulnerabilities like Session fixation, CSRF etc we need to think more on how can we introduce them in vulnerableApp.
Any Su…
-
### Description
Validation of OpenAPI Spec
### Motivation
Due to problems --> no endpoints were recognised by OWASP ZAP while calling
`docker run --rm -v $(pwd):/zap/wrk:rw -t ghcr.io/zaprox…
-
Raised by @kingthorin:
The quotes section of the front page was disabled in: https://github.com/rezen/zaproxy-website/pull/42 as there was only one quote in place (and it might not be the correct l…
-
```
Zaproxy should be able to tell me how many pages that I have spidered are
static, dynamic and how many parameters the pages have. This will help when
doing the initial scoping and recon on a web…
-
### Describe the bug
In the source code, I noticed that ZAP is supposed to detect Union Based vulnerabilities. However, when I tested ZAP with 30 test cases, most of which included Union Based SQLi v…
-
This issue lists Renovate updates and detected dependencies. Read the [Dependency Dashboard](https://docs.renovatebot.com/key-concepts/dashboard/) docs to learn more.
## Repository problems
Renovate…
-
```
Right now custom break points apply to _both_ requests and responses.
It would be much better if the user could choose if one applies to a request, a response
or both.
Proposed on https://groups.g…
-
See https://github.com/zaproxy/zap-hud/pull/1109
The Vuejs libs names have changed.
According to https://vuejs.org/guide/quick-start.html#without-build-tools it looks like the *.esm-browser.js fil…