Skip to main content

2026 年 4 月 20 日

Mitigating Cross-Site Scripting Attacks

By default, Horizon employs the XSS (cross-site scripting) Filter feature to mitigate cross-site scripting attacks by sending the header x-xss-protection=1; mode=block in its HTTP responses.

You can disable this feature by adding the following entry to the file locked.properties:

x-xss-protection=OFF

このページは役に立ちましたか?

このトピックについてフィードバックを送信

このトピックは役に立ちましたか?

個人情報や機密情報は入力しないでください。

リンクを生成しています…