-
Bug
-
Resolution: Done
-
Minor
-
None
-
None
DAST scanning of WildFly has picked up that on the management interface the Anti-MIME-Sniffing header X-Content-Type-Options is not set to 'nosniff'.
See https://owasp.org/www-project-secure-headers/#x-content-type-options for background information.
- relates to
-
WFLY-19101 Add test checking for X-Content-Type-Options header in management console
- Closed