PeopleTools and Lifecycle Management - PSFT (MOSC)

MOSC Banner

Security Vulnerabilities

edited Feb 23, 2020 8:40PM in PeopleTools and Lifecycle Management - PSFT (MOSC) 2 commentsAnswered

Hi Team,

We are on PS HCM Image#20 with Tools-8.56. We recently did a security scan on our externally facing web site and found the below flaws.

Could you please help to resolve the below vulnerabilities-

COOKIE CONFIGURATION

Cookies with potentially sensitive information are sent without secure flag.

Cookies Security Analysis

The cookie is missing Secure and SameSite flags, make sure it does not store sensitive information.

MISSING REQUIRED HTTP HEADERS

Strict-Transport-Security

X-XSS-Protection

X-Content-Type-Options

Expect-CT

Feature-Policy

Thanks!

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center