Burp Suite User Forum

Create new post

XSS Mitigation

BUYNOVSKY, | Last updated: Apr 02, 2021 05:22PM UTC

Regarding XSS mitigation, please inform as to whether the “X-XSS-Protection: 1; mode=block” will stop a page from rendering in new browsers, or if the CSP will be referenced. Also, is there a reason that “X-XSS-Protection: 1; report=<reporting-uri>” is not mentioned? Any help you may provide will be greatly appreciated.

Uthman, PortSwigger Agent | Last updated: Apr 06, 2021 11:11AM UTC

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.