Santandersecurityresearch / corsair_scan

Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).
MIT License
122 stars 15 forks source link

Add a check for localhost:anyport #33

Open ericsampson opened 3 years ago

ericsampson commented 3 years ago

As discussed here , check that the accept list doesn’t include localhost:anyport