v13.0.200807155 - 07 Aug 2020
Version 13 (Windows / Linux: 13.0.200807155, macOS: 13.0.200807156) 7th August 2020
New Features
- Acunetix is now available in Simplified Chinese
- Path Fragments are now shown in the site structure
New Vulnerability Checks
- New check for Insecure Inline Frames
- New check for Remote code execution of user-provided local names in Rails
- New check for SAP NetWeaver RECON auth bypass vulnerability
- New check for H2 console publicly accessible
- New check for PHP version disclosure
- New check for Atlassian JIRA ServiceDesk misconfiguration
- New test for Jolokia XML External Entity (XXE) vulnerability
- New checks for WordPress core, WordPress themes, WordPress plugins, Joomla and Drupal
Updates
- Created and Last Updated dates are available for vulnerabilities
- Order of section in Comparison report updated to be more intuitive
- Target Address is shown in full in the UI
- /users/ endpoint is now available in the API
Fixes
- Fixed issue when exporting vulnerabilities to WAF which contained CVSS3.1
- Fixed issue causing custom user-agent to not be used in all requests during a scan
- Fixed issues causing some vulnerabilities not to be well formatted when sent to JIRA issue tracker
- Fixed issue when adding JIRA Issue Tracker in Acunetix Online
- Fixed issue caused when adding Targets to an existing Target Group
- Minor fix in Comprehensive report text
- Fixed UI issue showing blank list (Scans, Targets etc) when using the browser’s back button
- Fixed issue caused by scanning Targets with complex GraphQL schemas