Releases: zaproxy/zap-extensions
Releases · zaproxy/zap-extensions
MacOS WebDrivers version 35
Changed
- Update ChromeDriver to 97.0.4692.71.
Linux WebDrivers version 35
Changed
- Update ChromeDriver to 97.0.4692.71.
OAST Support version 0.8.0
Changed
- Set HttpSender's initiator to
OAST_INITIATOR
, value 16.
Fixed
- Fixed Interactsh multi threading issue during register and deregister (Issue 6997)
- Interactsh: server URL change in Options deregisters old server URL and registers new server URL
- OAST Interactsh Options Dialog: If host or token config changed the 'New Payload' Button generates the Payload still with the old config.
Button is disabled in that case.
Passive scanner rules version 38
Changed
- Update minimum ZAP version to 2.11.1.
- Renamed 'X-Frame-Options Header Not Set' alert to 'Missing Anti-clickjacking Header', and associated scan rule 'X-Frame-Options Header' to 'Anti-clickjacking Header'. The rule already considered Content-Security-Policy 'frame-ancestors' which is a more modern solution to the same concern. Updated associated solution text. (Issue 6937)
- Content Security Policy scan rule will no longer classify "require-trusted-types-for" or "trusted-types" directives as unknown (Issue 6602).
Active scanner rules (alpha) version 35
Fixed
- Log4Shell: Fixed the RMI Payloads (Issue 7002).
- Log4Shell: Continue with further payloads if one payload throws an error
Changed
- Log4Shell: Added detection for CVE-2021-45046
Automation Framework version 0.10.1
Fixed
- Ensure system environment variables take precedence over configuration variables (Issue 7000).
Wappalyzer - Technology Detection version 21.7.0
Changed
- Updated with upstream Wappalyzer icon and pattern changes.
- Update minimum ZAP version to 2.11.1.
Save XML Message version 0.3.0
Retired
- This add-on has been retired, and its functionality has been replaced by the Import/Export Add-on.
Save Raw Message version 7
Retired
- This add-on has been retired, and its functionality has been replaced by the Import/Export Add-on.
Import files containing URLs version 9
Retired
- This add-on has been retired, and its functionality has been replaced by the Import/Export Add-on.
Changed
- Update minimum ZAP version to 2.11.1.