Alert Tag: TOOL_PTK_ACTIVE_DEFAULT

https://www.zaproxy.org/docs/desktop/addons/owasp-ptk/#tool_ptk_active_default

All of the alerts which use this tag:
ID Alert Status Risk Type
200003-1 JWT Probe (Authorization + JWT cookies removed) beta High Tool
200003-2 JWT Probe (Authorization header removed) beta High Tool
200003-3 JWT Probe (JWT cookies removed) beta High Tool
200003-4 JWT None Algorithm (Cookie) beta High Tool
200003-5 JWT None Algorithm (Form body param) beta High Tool
200003-6 JWT None Algorithm (Authorization header) beta High Tool
200003-7 JWT None Algorithm (JSON body) beta High Tool
200003-8 JWT Probe (Form body JWT removed) beta High Tool
200003-9 JWT Probe (JSON body JWT removed) beta High Tool
200007 SPA hash DOM XSS beta High Tool
200008 ws:// from HTTPS context beta Low Tool
200009-1 JavaScript includes sourceMappingURL beta Low Tool
200009-2 HTML references .map files beta Low Tool
200009-3 Webpack dev-server / hot reload artifacts beta Low Tool
200009-4 Next.js build metadata exposed beta Low Tool
200011-1 Private key material exposed beta Low Tool
200011-2 AWS Access Key ID pattern beta Low Tool
200011-3 Slack token pattern beta Low Tool
200011-4 GitHub token pattern beta Low Tool
200011-5 Sentry DSN exposed beta Low Tool
200011-6 Firebase config exposed beta Low Tool
200011-7 Stripe publishable key exposed beta Low Tool
200011-8 Mapbox token exposed beta Low Tool
200011-9 Google API key pattern beta Low Tool
200013-1 security.txt observed beta Informational Tool
200013-2 OIDC well-known configuration observed beta Informational Tool
200013-3 Android assetlinks.json observed beta Informational Tool
200013-4 Apple app-site-association observed beta Informational Tool
200014-1 access_token/id_token in URL beta Medium Tool
200014-2 JWT-like value in URL beta Medium Tool
200014-3 api_key/key in URL beta Medium Tool
200015-1 Open redirect candidate parameter beta Informational Tool
200015-2 SSRF / webhook URL candidate parameter beta Informational Tool
200015-3 File/path candidate parameter beta Informational Tool
200015-4 IDOR candidate parameter beta Informational Tool
200016-1 Internal IP address leaked in response beta Low Tool
200016-2 localhost/127.0.0.1 referenced in response beta Low Tool
200016-3 Environment hints (dev/staging/test) in response beta Low Tool
200016-4 Cloud metadata IP referenced beta Low Tool
200017-1 Dynamic ACAO without Vary: Origin beta Low Tool
200017-2 CORS allows broad methods beta Low Tool
200017-3 CORS allows broad headers beta Low Tool
200019-1 Admin/management path observed beta Informational Tool
200019-2 Debug/diagnostic path observed beta Informational Tool
200019-3 Spring Boot actuator endpoint observed beta Informational Tool
200019-4 Swagger/OpenAPI path observed beta Informational Tool
200019-5 GraphQL path observed beta Informational Tool
200019-6 Potential backup file observed beta Informational Tool
200019-7 Environment/config file observed beta Informational Tool
200019-8 Potential .git exposure path observed beta Informational Tool
200019-9 phpinfo endpoint observed beta Informational Tool
200021-1 AngularJS template injection - reflected 1.0.1 to 1.1.5 beta High Tool
200021-2 AngularJS expression injection - expression 1.0.1 to 1.1.5 beta High Tool
200021-3 AngularJS template injection - reflected short legacy 1.0.1 to 1.1.5 beta High Tool
200021-4 AngularJS template injection - reflected 1.2.0 to 1.2.1 beta High Tool
200021-5 AngularJS expression injection - expression 1.2.0 to 1.2.18 beta High Tool
200021-6 AngularJS template injection - reflected 1.2.2 to 1.2.5 beta High Tool
200021-7 AngularJS template injection - reflected 1.2.6 to 1.2.18 beta High Tool
200021-8 AngularJS expression injection - expression 1.2.6 to 1.2.18 beta High Tool
200021-9 AngularJS template injection - reflected 1.2.19 to 1.2.23 beta High Tool
200021-10 AngularJS expression injection - expression 1.2.19 to 1.2.23 beta High Tool
200021-11 AngularJS template injection - reflected 1.2.24 to 1.2.29 beta High Tool
200021-12 AngularJS expression injection - expression 1.2.24 to 1.2.26 beta High Tool
200021-13 AngularJS expression injection - expression 1.2.27 to 1.3.20 beta High Tool
200021-14 AngularJS template injection - reflected 1.4.0 to 1.4.9 beta High Tool
200021-15 AngularJS expression injection - expression 1.4.0 to 1.4.5 beta High Tool
200021-16 AngularJS template injection - reflected 1.5.0 to 1.5.8 beta High Tool
200021-17 AngularJS expression injection - expression 1.4.2 to 1.5.8 beta High Tool
200021-18 AngularJS template injection - reflected 1.6 and later beta High Tool
200021-19 AngularJS expression injection - expression 1.6 and later beta High Tool
200021-20 AngularJS expression injection - single-quote expression 1.2.19 to 1.2.23 beta High Tool
200021-21 AngularJS template injection - reflected marker 1.4.0 to 1.4.9 beta High Tool
200021-22 AngularJS template injection - HTML entity delimiters 1.4.0 to 1.4.9 beta High Tool
200021-23 AngularJS template injection - HTML entity alternate delimiters 1.4.0 to 1.4.9 beta High Tool
200021-24 AngularJS expression injection - template marker expression 1.4.0 to 1.4.9 beta High Tool
200021-25 AngularJS template injection - alternate delimiters 1.6 and later beta High Tool
200023-1 Open redirect via common param names beta Medium Tool
200023-2 Open redirect reflected in form action beta Medium Tool
200023-3 Open redirect reflected in body destination beta Medium Tool
200024 JSONP callback parameter controls JavaScript response beta Medium Tool