Security Test: Reflected URL Parameter¶
Scanner(s) Support¶
GraphQL Scanner | REST Scanner | Frontend Scanner |
---|---|---|
Description¶
Default Severity:
A user input via a URL parameter is reflected in the page content. While not all reflected parameters are vulnerable, it is a good practice to validate and sanitize all user input.
Configuration¶
Identifier:
frontend_injection/reflected_url_parameter
Examples¶
All configuration available:
Compliance and Standards¶
Standard | Value |
---|---|
OWASP API Top 10 | A03:2021 |