v13.0.200715111 - 15 Jul 2020
Version 13 (build 13.0.200715111 for Windows, Linux and build 13.0.200715153 for macOS) 15th July 2020
New Features
- Acunetix on premise is now available for macOS
New Vulnerability Checks
- New test for F5 BIG-IP Traffic Management User Interface (TMUI) RCE [CVE-2020-5902]
- New test for Composer installed.json publicly accessible
- New test for Symfony debug mode enabled
- New test for Symfony Profiler open
- New test for Directory Traversal with spring-cloud-config-server [CVE-2020-5410]
- New test for Grafana avatar SSRF [CVE-2020-13379]
- New test for rack-mini-profiler environment variables disclosure
- New test for Telerik Web UI RadAsyncUpload Deserialization [CVE-2019-18935]
Updates
- Improved UI messages when scans cannot start due to Manual Intervention
- Updated interpretation and generation of XML requests / responses
- New Scanning profile for High and Medium Vulnerabilities
- Target Description is now available on the Scans page
- Incremental Scans initiated by Jenkins plugin are correctly labelled as incremental
- A number of improvements in JavaScript Libraries Audit
Fixes
- Fixed issue caused when configuring Gitlab issue tracker with Impersonation Token
- Fixed issue causing filter not to be available for Standard licenses
- Fixed Malware Scan profile to include checks for malware links
- Fixed resource allocation issue, causing scans to end unexpectedly
- Comprehensive Report was incorrectly showing High Severity Threat level
- Fixed issue affecting the CVSS score calculation of some vulnerabilities