hhucn / webvulnscan

automated web application vulnerability scanner
MIT License
38 stars 27 forks source link

Add Ignoring Options #13

Open rliebig opened 11 years ago

rliebig commented 11 years ago

It is possible that the user is aware of a possible vulnerability, as example if he runs a javascript web IDE, we doesn't want to be notified of the XSS-Problems in the input field. However, we still wants to check for XSS-Attacks in other fields. There should be a option for this. The syntax could be:

--ignore xss=http://test.com/