CompTIA
CAS-005 · Question #140
A company runs a DAST scan on a web application. The tool outputs the following recommendations: - Use Cookie prefixes. - Content Security Policy - SameSite=strict is not set. Which of the following v
Sign in or unlock CAS-005 to reveal the answer and full explanation for question #140. The question stem and answer options stay visible for context.
Submitted by tom_us· Mar 6, 2026Security Engineering
Question
A company runs a DAST scan on a web application. The tool outputs the following recommendations:
- Use Cookie prefixes.
- Content Security Policy - SameSite=strict is not set.
Which of the following vulnerabilities has the tool identified?
Options
- ARCE
- BXSS
- CCSRF
- DTOCTOU
Unlock CAS-005 to see the answer
You've previewed enough free CAS-005 questions. Unlock CAS-005 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.