Skip to main content

2025 年 6 月 20 日

Mitigating Cross-Site Scripting Attacks

By default, Horizon 8 employs the XSS (cross-site scripting) Filter feature to mitigate cross-site scripting attacks by sending the header x-xss-protection=1; mode=block in its HTTP responses.

You can deactivate this feature by adding the following entry to the file locked.properties:

x-xss-protection=OFF

此頁面對您有幫助嗎?

針對本主題提供意見回饋

本主題對您有幫助嗎?

請勿填寫任何個人或機密資訊。

正在產生連結…