CWE-918 Server-Side Request Forgery (SSRF) for DAST API
Everyone can contribute. Help move this issue forward while earning points, leveling up and collecting rewards.
Problem
API Security (Peach API) scanner doesn't support CWE-918 Server-Side Request Forgery (SSRF). This is a gap between API Security and ZAP.
Proposal
-
Create new check -
Unit tests -
Integration tests -
E2E Tests -
Java benchmark passes
Edited by 🤖 GitLab Bot 🤖