You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to ZAP User Group
I m scanning my app and i m getting the Proxy Disclosure issue on almost all the urls present on the application . As per the zap documentation i have added the solution also but still it is triggering the proxy disclosure issue .
So as per the solution i have disabled the TRACE & OPTIONS method and also removed the Server and X-Powered-By' from HTTP response headers .
Can anyone please let me know if i m missing something
Simon Bennetts
unread,
Oct 2, 2023, 3:08:02 AM10/2/23
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to ZAP User Group
Can you share the details of the issue?
They should give more information.
Cheers,
Simon
rauf shaikh
unread,
Oct 3, 2023, 3:18:02 AM10/3/23
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to ZAP User Group
Please check attached screenshots
kingthorin+zap
unread,
Oct 3, 2023, 11:19:45 AM10/3/23
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
Based on the details you provided if you use the TRACK method and purposefully set max-forwards and iterate at some point the details deviate which indicates a proxy or other intermediate device. (There's a chance that it's something outside ofyour control.)