Burp Suite Enterprise Edition is now available in our secure Cloud  –  Learn more

Professional 1.6.21

07 July 2015 at 15:32 UTC

SHA256: 115e7c37ecae00f769ce23581e690f13bf841b518034467fd2a0485146883983 MD5: 3db9e71152b01d6ba6ec2387231b08aa

In this release, the description and remediation text for all Scanner issues has been rewritten to bring things up to date.

Additionally, the definitions for all available issues can now be viewed within the Burp UI, at Scanner / Issue definitions:

Where applicable, issues also include a list of references to online resources relating to the vulnerability.

This should hopefully provide a useful learning resource for people setting out in web security testing who want to read up about different vulnerabilities.

It will also help people who create integrations between Burp and other security tools. The "type index" field on each issue type is the number that is included within Burp's XML output and available via the API. This can be used to map Burp's issues to other taxonomies of web security vulnerabilities.