OWASP/wstg

Inappropriate content (Testing for Cross Site Script Inclusion)

Open

#954 aperta il 18 lug 2022

Vedi su GitHub
 (8 commenti) (0 reazioni) (0 assegnatari) (1624 fork)github user discovery
help wantedrevise

Metriche repository

Star
 (9439 star)
Metriche merge PR
 (Metriche PR in attesa)

Descrizione

4.11.13 Testing for Cross Site Script Inclusion is not a WEB vulnerability, is a Web Browser application vulnrability. The WSTG is a framework for WEB aplications testing and 4.11 is for client side applications but no client applications. This vulnerability only can affect to specific browsers like as ie6, in this case you need include all other cve vulnerabilities or all other browsers like as how to broken the origin policy from ie8.

This document shouldn't be.

Guida contributor