Описание
Openshift 4.9 does not use HTTP Strict Transport Security (HSTS) which may allow man-in-the-middle (MITM) attacks.
Дополнительная информация
Статус:
Low
Дефект:
CWE-665
https://bugzilla.redhat.com/show_bug.cgi?id=2103220OpenShift: Missing HTTP Strict Transport Security
7.4 High
CVSS3
Связанные уязвимости
CVSS3: 7.4
nvd
около 3 лет назад
Openshift 4.9 does not use HTTP Strict Transport Security (HSTS) which may allow man-in-the-middle (MITM) attacks.
CVSS3: 7.4
github
около 3 лет назад
Openshift 4.9 does not use HTTP Strict Transport Security (HSTS) which may allow man-in-the-middle (MITM) attacks.
7.4 High
CVSS3