The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Potentially misconfigured headers from extension "Header Analyzer"

Einar | Last updated: Sep 13, 2016 09:31PM UTC

The "Header Analyzer" extension reports the following issue: Potentially misconfigured headers: Header name: x-xss-protection. Header value: 1; mode=block My response contains this header: X-XSS-Protection: 1; mode=block As far as I know, that is a correct header? Can anyone explain why this extension says it is "potentially misconfigured? Thanks

PortSwigger Agent | Last updated: Sep 14, 2016 01:07PM UTC