Benjamin Athlan
·FF Lover, Co-organiser of Nocode Summit, CEO of Slituo and Co-founder of TribuSanté, VP French NoCode Syndicate

Pentest on web app reveals many vulnerabilities (hosted by Flutterflow)

Project Settings

Hello,

We performed a pentest for a web app who is hosted by FF.

2 major vulnerabilities have been detected :

  • BREACH

  • LUCKY13

  • TLS_FALLBACK_SCSV

What have you tried so far?

We tried to add headers in custom headers in App Settings > Web Publishing but this should be fixed server wide.

Did you check FlutterFlow's Documentation for this topic?
No
2
1 reply