Friday, November 23, 2018

Cross-site scripting (XSS) attacks,

Cross-site scripting (XSS) attacks bypass the same origin policy by tricking a site into delivering malicious code along with the intended content.

Browsers trust all of the code that shows up on a page as being legitimately part of that page's security origin.