OWASP/wstg

Inappropriate content (Testing for Cross Site Script Inclusion)

Open

#954 创建于 2022年7月18日

在 GitHub 查看
 (8 评论) (0 反应) (0 负责人) (1,624 fork)github user discovery
help wantedrevise

仓库指标

Star
 (9,439 star)
PR 合并指标
 (PR 指标待抓取)

描述

4.11.13 Testing for Cross Site Script Inclusion is not a WEB vulnerability, is a Web Browser application vulnrability. The WSTG is a framework for WEB aplications testing and 4.11 is for client side applications but no client applications. This vulnerability only can affect to specific browsers like as ie6, in this case you need include all other cve vulnerabilities or all other browsers like as how to broken the origin policy from ie8.

This document shouldn't be.

贡献者指南