Wineauthority · Security Report CONFIDENTIAL
Scan Summary · 2026-05-26

Vulnerability findings for wineauthority.co.za

https://wineauthority.co.za/  ·  154.65.107.230

The latest scan identified 37 findings across the public-facing infrastructure. No critical or high-severity issues were observed in this run. 5 medium-severity item(s) should be scheduled for the next change window. Low: 11, Informational: 21.

Critical
0
High
0
Medium
5
Low
11
Info
21
REPORT  9b5ab6fa SCAN  13:04 UTC TOOLS  httpx · nmap · subfinder · zap
Medium severity 5 FINDINGS
M-01
Absence of Anti-CSRF Tokens
— · 1 instance(s)
Medium
M-02
Content Security Policy (CSP) Header Not Set
— · 3 instance(s)
Medium
M-03
Missing Anti-clickjacking Header
— · 3 instance(s)
Medium
M-04
Source Code Disclosure - Java
— · 4 instance(s)
Medium
M-05
Sub Resource Integrity Attribute Missing
— · 3 instance(s)
Medium
Low severity 11 FINDINGS
L-01
Big Redirect Detected (Potential Sensitive Information Leak)
— · 1 instance(s)
Low
L-02
Cookie Without Secure Flag
— · 2 instance(s)
Low
L-03
Cross-Origin-Embedder-Policy Header Missing or Invalid
— · 2 instance(s)
Low
L-04
Cross-Origin-Opener-Policy Header Missing or Invalid
— · 2 instance(s)
Low
L-05
Cross-Origin-Resource-Policy Header Missing or Invalid
— · 5 instance(s)
Low
L-06
Dangerous JS Functions
— · 1 instance(s)
Low
L-07
Permissions Policy Header Not Set
— · 5 instance(s)
Low
L-08
Server Leaks Version Information via "Server" HTTP Response Header Field
— · 5 instance(s)
Low
L-09
Strict-Transport-Security Header Not Set
— · 5 instance(s)
Low
L-10
Timestamp Disclosure - Unix
— · 4 instance(s)
Low
L-11
X-Content-Type-Options Header Missing
— · 5 instance(s)
Low
Informational 21 FINDINGS
3 network observation(s) on 154.65.107.230: ssh/22, http/80, https/443 plus httpx (1) plus subfinder (10).

The detailed HTML report (full_vulnerable_reports) lists evidence, endpoints, and remediation text where the scanner provided it.

This message contains confidential security information.
Do not forward outside the intended recipient list.
REPORT 9b5ab6fa
2026-05-26

Wineauthority · Automated security scan summary