v5.1
-
New
- When the
RESPONSE PARAMETERS
option ofJavascript variables and constants
is selected, GAP will now extract parameter names from nested objects too. - Add
Inc. Tentaive?
option next toReport "sus"params?
option. Findings markedTentative
will only be raised if this option is checked. If disabled it will speed up processing.
- When the
-
Changed
- Move the check for Sus param checkbox being checked to the start of
checkSusParams
instead of half way through, to help speed things up. - Change regex
REGEX_PARAMSPOSSIBLE
andREGEX_PARAMSSUB
to check for HTML entities with the&
as optional, as sometimes they appear without. This ensures they are replaced more effectively.
- Move the check for Sus param checkbox being checked to the start of