cancel
Showing results for 
Search instead for 
Did you mean: 
Read only

Need fix for enabling foundational application defences - Hybris Security

rbonam
Discoverer
258

Hi,

Our recent implementation have undergone security and penetration testing and One of the low but important finding the security team have raised that " the application is missing or does not use consistently mechanisms such as SameSite cookie marking, HSTS and content sniffing." and the description of the risk states "Web application may be vulnerable to a variety of well-known risks due to foundational web application defence mechanisms not being implemented and/or enabled."

Is there a way to fix / configuration properties to adjust/avoid security threats related to HSTS and content sniffing ?

Current implementation is on Hybris 1808 on Commerce Cloud v2.

Accepted Solutions (0)

Answers (0)