Releases: zaproxy/zap-extensions
Releases · zaproxy/zap-extensions
Windows WebDrivers version 145
Changed
- Update ChromeDriver to 138.0.7204.49.
MacOS WebDrivers version 145
Changed
- Update ChromeDriver to 138.0.7204.49.
Linux WebDrivers version 145
Changed
- Update ChromeDriver to 138.0.7204.49.
WebSockets version 33
Changed
- Add website alert links to the help page (Issue 8189).
- Replace usage of CWE-200 for the following rules (Issue 8712):
- Email Disclosure.
- Debug Error Disclosure.
Technology Detection version 21.46.0
Changed
- Updated with enthec upstream icon and pattern changes.
Ajax Spider version 23.24.0
Added
- Allow to configure how the scope is checked, either Flexible or Strict, to allow or not access to out of scope domains.
- Allow to avoid logout elements.
Changed
- Maintenance changes.
Fixed
- Allow access to domains out of context (e.g. SSO) when using Client Script and Browser Based Authentication.
Spider version 0.15.0
Changed
- Include anti-csrf tokens as part of irrelevant parameters.
- Ignore irrelevant parameters in request bodies (
x-www-form-urlencoded
) (Related to Issue 7771). - Skip all URIs with
javascript
schemes. - Changed to title caps on the Irrelevant Parameters table "title" in the Options dialog (Issue 2000).
Added
- Add an option to allow users to indicate the Spider should attempt to avoid logout related paths/functionality.
Fixed
- An incorrect column name in the Irrelevant Parameters table used by the Options dialog (Domain should have been Name).
SOAP Support version 25
Added
- The WSDL passive scan rule has been tagged of interest to Penetration Testers and QA.
- The included active scan rules have been tagged of interest to Penetration Testers.
Changed
- Depends on an updated version of the Common Library add-on.
Script Console version 45.12.0
Changed
- Maintenance changes.
Fixed
- Loop when trying to extract an underlying script exception.
Scan Policies version 0.3.0
Changed
- Updated based on Rules' Policy Tag assignments.
- Updated help to cover the PENTEST Policy Tag.