Question

NBA installation is causing security issue

Hi Team,

We had installed NBAA recently(on top PM 7.31 and Pega 7.3.1) and we observed mashup cookie is being added.

It was reported by security team while they were doing testing.

I was just going through the post https://community1.pega.com/community/product-support/question/what-cookies-are-placed-pega-web-mashup-and-what-are-those and found that cookie is introduced by PegaInternetApplicationComposer.js which is not secure.

PFB, for screenshot

Please suggest the mitigation of this issue.Thanks !!

***Moderator Edit-Vidyaranjan: Updated Platform Capability***

Comments

Keep up to date on this post and subscribe to comments

August 5, 2019 - 3:09pm

Dear Moderators,

can you please help me in routing this question to experts ?