FORTH-ICS-INSPIRE / artemis-web

The web frontend of the ARTEMIS software project (https://github.com/FORTH-ICS-INSPIRE/artemis).
BSD 3-Clause "New" or "Revised" License
5 stars 8 forks source link

ZAP Scan Baseline Report #86

Open github-actions[bot] opened 3 years ago

github-actions[bot] commented 3 years ago

View the following link to download the report. RunnerID:731435512

slowr commented 3 years ago

@vkotronis this is the new report with nginx proxy in front.

There are some missing stuff that we had before like CSP: https://github.com/FORTH-ICS-INSPIRE/artemis/blob/5b12a9d79a2785d53182244b2eec0d30f87aad96/frontend/webapp/core/__init__.py#L48

Then we need to hide some stuff in nginx configuration and lastly, we can create a file in the repo for some false-negatives.

(more info if you download the report)

vkotronis commented 3 years ago

@slowr I approved the nginx PR, could you also create an issue with the missing CSP details?

github-actions[bot] commented 3 years ago

View the following link to download the report. RunnerID:784860073

github-actions[bot] commented 3 years ago

View the following link to download the report. RunnerID:839280981