The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

XSS Mitigation

BUYNOVSKY, | Last updated: Apr 02, 2021 05:22PM UTC

Regarding XSS mitigation, please inform as to whether the “X-XSS-Protection: 1; mode=block” will stop a page from rendering in new browsers, or if the CSP will be referenced. Also, is there a reason that “X-XSS-Protection: 1; report=<reporting-uri>” is not mentioned? Any help you may provide will be greatly appreciated.

Uthman, PortSwigger Agent | Last updated: Apr 06, 2021 11:11AM UTC