Details
Alert ID 90005-4
Alert Type Passive
Status alpha
Risk Informational
CWE 352
WASC 9
Technologies Targeted All
Tags CWE-352
WSTG-V42-SESS-05
More Info Scan Rule Help

Summary

Specifies if a navigation request was initiated by a user.

Solution

Ensure that Sec-Fetch-User header is included in user initiated requests.

Other Info

References

Code

org/zaproxy/zap/extension/pscanrulesAlpha/FetchMetadataRequestHeadersScanRule.java