Skip to content

v10.1.7

Compare
Choose a tag to compare
@princechaddha princechaddha released this 12 Apr 13:43
· 504 commits to main since this release

What's Changed

🔥 Release Highlights 🔥


False Negatives

  • Improved detection in halo-tism-sqli.yaml (PR #11892).

False Positives

  • Reduced false positives in hashicorp-consul-unauth.yaml (Issues #11852#11881)
  • Corrected misdetection in headless-open-redirect.yaml with specific redirect target (Issue #11885)

Enhancements

  • Applied waitdialog handling to improve detection in dom-xss.yaml (PR #11921).
  • Updated detection logic in CVE-2025-1974.yaml for Ingress-Nginx RCE (PR #11917).
  • Updated smb-shares.yaml to refine share enumeration (PR #11880).
  • Improved login detection in emqx-default-login.yaml (PR #11865).
  • Refined credential detection in apache-hertzbeat-default-login.yaml (PR #11850).

Bug Fixes

  • Fixed metadata resolution issue in ldap-metadata.yaml (PR #11922).

Template Updates

New Templates Added: 64 | CVEs Added: 28 | First-time contributions: 6

New Contributors

Full Changelog: v10.1.6...v10.1.7