ASVS Requirement 15.3.2
- Level: 2
- Chapter: V15 Secure Coding and Architecture
- Section: V15.3 Defensive Coding
- Source: 0x24-V15-Secure-Coding-and-Architecture.md
Description
Verify that where the application backend makes calls to external URLs, it is configured to not follow redirects unless it is intended functionality.