Skip to main content

20 juin 2025

Mitigating Cross-Site Scripting Attacks

By default, Horizon 8 employs the XSS (cross-site scripting) Filter feature to mitigate cross-site scripting attacks by sending the header x-xss-protection=1; mode=block in its HTTP responses.

You can deactivate this feature by adding the following entry to the file locked.properties:

x-xss-protection=OFF

Cette page vous a-t-elle été utile ?

Envoyer un commentaire sur cette rubrique

Cette rubrique vous a-t-elle été utile ?

N'indiquez aucune information personnelle ou confidentielle.

Génération du lien…