Uploaded image for project: 'WORKTERRA'
  1. WORKTERRA
  2. WT-12636

[Security] ZAP Scan Issues : Password Autocomplete in Browser

    Details

    • Type: Bug
    • Status: Rejected
    • Priority: Medium
    • Resolution: Cannot Reproduce
    • Affects Version/s: None
    • Fix Version/s: None
    • Component/s: None
    • Labels:
      None
    • Environment:
      Production
    • Bug Severity:
      Low
    • Level:
      Admin, Employee, Partner
    • Module:
      BenAdmin - Security
    • Reported by:
      Harbinger
    • Company:
      All Clients/Multiple Clients

      Description

      The AUTOCOMPLETE attribute is not disabled on an HTML FORM/INPUT element containing password type input. Passwords may be stored in browsers and retrieved.

      For more details please refer attached HTML report

      CC SamirRakesh RoyJaideep Vinchurkaranirudha joshi

        Attachments

          Issue Links

            Activity

            prasadp Prasad Pise (Inactive) created issue -
            prasadp Prasad Pise (Inactive) made changes -
            Field Original Value New Value
            Link This issue relates to NF-2714 [ NF-2714 ]
            santosh.balid Santosh Balid (Inactive) made changes -
            Status Open [ 1 ] In Development [ 10007 ]
            Hide
            santosh.balid Santosh Balid (Inactive) added a comment -

            This is also not reproducible, So could you please try this at your end and let me know in case if it is reproducible to you.

            Show
            santosh.balid Santosh Balid (Inactive) added a comment - This is also not reproducible, So could you please try this at your end and let me know in case if it is reproducible to you.
            santosh.balid Santosh Balid (Inactive) made changes -
            Resolution Cannot Reproduce [ 5 ]
            Status In Development [ 10007 ] Rejected [ 10004 ]
            santosh.balid Santosh Balid (Inactive) made changes -
            Assignee Santosh Balid [ santosh.balid ] Prasad Pise [ prasadp ]
            vijayendra Vijayendra Shinde (Inactive) made changes -
            Link This issue relates to DEV-13718 [ DEV-13718 ]
            Transition Time In Source Status Execution Times
            Santosh Balid (Inactive) made transition -
            Open In Development
            6d 5h 30m 1
            Santosh Balid (Inactive) made transition -
            In Development Rejected
            21s 1

              People

              Assignee:
              prasadp Prasad Pise (Inactive)
              Reporter:
              prasadp Prasad Pise (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved: