Hi,
One of our clients are using Blackstone One to check their website for security breaches. They have received a couple of warnings about "Access restriction bypass via origin spoof", where Blackstone One gives the following description:
"BlackstoneOne discovered a resource that it did not have permission to access, but been granted access after spoofing the address of localhost (127.0.0.1), thus bypassing any requirement to authenticate."
Anyone else seen this problem and figured out a way of fixing it?
--
Best regards
Kurt Moskjaer Andersen