Oracle Weblogic Server (MOSC)

MOSC Banner

Is there a way to configure WebLogic to use security headers?

edited May 27, 2020 5:08AM in Oracle Weblogic Server (MOSC) 2 commentsAnswered

Hi All,

Our application has been recently scanned and found that the application is missing the following security headers:

  • Content-Security-Policy
  • X-Content-Type-Options
  • X-XSS-Protection
  • HTTP Strict Transport Security (HSTS)

Are there any other ways (besides patching) that could resolve this vulnerability of missing security headers? Thanks in advance.

WebLogic version: 10.3.6

PeopleTools: 8.53.26

PeopleSoft 9.1

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center