ISO27001-A.14.2.5
OWASP 2013-A6
OWASP 2017-A3

Content Security Policy (CSP) Contains Out of Scope report-uri Domain

Severity:
Information
Summary

Invicti detected that your CSP declaration contains report-uri value that points to an out of scope external domain. This domain will be aware of the CSP violation occurs on your website and some sensitive data will be disclosed to this site.

Impact
Remediation

If you trust this domain you can ignore this issue. However if you do not trust this external domain, remove it from report-uri directive.

Required Skills for Successful Exploitation
Actions To Take
Vulnerability Index

You can search and find all vulnerabilities

Select Vulnerability
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.