zaproxy / zaproxy

The ZAP by Checkmarx Core project
https://www.zaproxy.org
Apache License 2.0
12.79k stars 2.28k forks source link

Private IP Disclosure scan rule - CWE-200 #8718

Open kingthorin opened 6 days ago

kingthorin commented 6 days ago

2 Private IP Disclosure (InfoPrivateAddressDisclosureScanRule) Passive release

kingthorin commented 4 days ago

https://cwe.mitre.org/data/definitions/497.html CWE-497: Exposure of Sensitive System Information to an Unauthorized Control Sphere