Zum Hauptinhalt springen
Glossary

XSS (Cross-Site Scripting)

Updated on 1 min

XSS (Cross-Site Scripting) is a web application vulnerability in which attackers inject malicious JavaScript into pages viewed by other users. Three variants exist: reflected XSS, stored XSS, and DOM-based XSS. In an ISMS, XSS is a common risk for web applications, addressed through input validation, output encoding, and Content Security Policy (CSP). A WAF can provide additional protection. XSS regularly features in the OWASP Top 10.

No Cookies!

This wiki collects nothing, bakes nothing and leaves nothing behind. There's nothing to consent to. Privacy doesn't get better than this.