<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to mitigate the below Vulnerability in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/How-to-mitigate-the-below-Vulnerability/m-p/173318#M28929</link>
    <description>&lt;P&gt;Dear Team,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Missing useful HTTP headers :-&amp;nbsp;Cache-control is an HTTP header used to specify browser caching policies in both client requests and server responses. Policies include how a resource is cached, where it’s cached and its maximum age&lt;BR /&gt;before expiring (i.e., time to live).&lt;/P&gt;&lt;P&gt;Using known vulnerable components :-&amp;nbsp;Application is using vulnerable JavaScript libraries. One or more vulnerabilities were reported for this version of the library.&lt;/P&gt;&lt;P&gt;Please help us with the solution to mitigate the same.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 02 Mar 2023 09:46:13 GMT</pubDate>
    <dc:creator>Hardik_Patil_66</dc:creator>
    <dc:date>2023-03-02T09:46:13Z</dc:date>
    <item>
      <title>How to mitigate the below Vulnerability</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-mitigate-the-below-Vulnerability/m-p/173318#M28929</link>
      <description>&lt;P&gt;Dear Team,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Missing useful HTTP headers :-&amp;nbsp;Cache-control is an HTTP header used to specify browser caching policies in both client requests and server responses. Policies include how a resource is cached, where it’s cached and its maximum age&lt;BR /&gt;before expiring (i.e., time to live).&lt;/P&gt;&lt;P&gt;Using known vulnerable components :-&amp;nbsp;Application is using vulnerable JavaScript libraries. One or more vulnerabilities were reported for this version of the library.&lt;/P&gt;&lt;P&gt;Please help us with the solution to mitigate the same.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Mar 2023 09:46:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-mitigate-the-below-Vulnerability/m-p/173318#M28929</guid>
      <dc:creator>Hardik_Patil_66</dc:creator>
      <dc:date>2023-03-02T09:46:13Z</dc:date>
    </item>
    <item>
      <title>Re: How to mitigate the below Vulnerability</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-mitigate-the-below-Vulnerability/m-p/173324#M28930</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Is the error/vulnerability clear for you "&lt;SPAN&gt;Missing useful HTTP headers :-&amp;nbsp;Cache-control is an HTTP header used to specify browser caching policies in both client requests and server responses.&lt;/SPAN&gt;"&amp;nbsp; ?&lt;BR /&gt;On the WebServer you're addressing, seems that you don't have configured "Cache-control" headers.&lt;/P&gt;
&lt;P&gt;(&lt;A href="https://infinitelogins.com/2022/03/04/missing-security-http-headers-we-should-call-out/" target="_self"&gt;go over this&lt;/A&gt; and maybe you'll get them clarified)&lt;/P&gt;
&lt;P&gt;Can you get us a screenshot of the Log where you see this...&lt;BR /&gt;&lt;BR /&gt;Thank you,&lt;/P&gt;</description>
      <pubDate>Thu, 02 Mar 2023 10:26:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-mitigate-the-below-Vulnerability/m-p/173324#M28930</guid>
      <dc:creator>Sorin_Gogean</dc:creator>
      <dc:date>2023-03-02T10:26:34Z</dc:date>
    </item>
    <item>
      <title>Re: How to mitigate the below Vulnerability</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-mitigate-the-below-Vulnerability/m-p/173405#M28944</link>
      <description>&lt;P&gt;Please provide more details about the environment and precisely what Check Point products involved (including version/JHF levels) and how.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Mar 2023 20:08:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-mitigate-the-below-Vulnerability/m-p/173405#M28944</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-03-02T20:08:27Z</dc:date>
    </item>
    <item>
      <title>Re: How to mitigate the below Vulnerability</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-mitigate-the-below-Vulnerability/m-p/174167#M29087</link>
      <description>&lt;P&gt;We are having cluster setup on version R81.10 with jumbo hotfix take 79.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Mar 2023 07:33:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-mitigate-the-below-Vulnerability/m-p/174167#M29087</guid>
      <dc:creator>Hardik_Patil_66</dc:creator>
      <dc:date>2023-03-09T07:33:37Z</dc:date>
    </item>
    <item>
      <title>Re: How to mitigate the below Vulnerability</title>
      <link>https://community.checkpoint.com/t5/General-Topics/How-to-mitigate-the-below-Vulnerability/m-p/174278#M29117</link>
      <description>&lt;P&gt;Still need more information:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Who or what exactly is reporting this vulnerability?&amp;nbsp;&lt;/LI&gt;
&lt;LI&gt;What precisely is being scanned? Is it the gateway itself, a device that it's protecting, or something else? What precise tCP ports are being scanned to make this "vulnerable" determination?&lt;/LI&gt;
&lt;LI&gt;Please provide an external reference to said vulnerability (e.g. a CVE # or similar) so we can understand the exact nature of it.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;If you don't want to post this information publicly, I suggest opening a TAC case.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Mar 2023 18:27:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/How-to-mitigate-the-below-Vulnerability/m-p/174278#M29117</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-03-09T18:27:50Z</dc:date>
    </item>
  </channel>
</rss>

