Fix for: HSTS Missing From HTTPS Server (RFC 6797) (MINDBREEZE32737)
ID: MINDBREEZE32737
Affected Components: Mindbreeze InSpire, Mindbreeze InSpire SaaS
Severity: Medium
Status: Final
First published: April 28, 2025
CVEs: Nessus-Plugin-ID-142960
Summary
- Nessus-Plugin-ID-142960: The remote web server is not enforcing HSTS, as defined by RFC 6797.
Hotfix Information
Fixed with following versions of Mindbreeze InSpire On-Premises or Mindbreeze InSpire SaaS:
- Mindbreeze InSpire 25.2 Release
- Mindbreeze InSpire Saas 25.2 Release