Daily Term: Cross-Site Scripting
Cross-Site Scripting
Cross-Site Scripting (XSS) is a security vulnerability where attackers inject malicious scripts into web pages viewed by other users. For example, an attacker might post a comment containing JavaScript that steals cookies when rendered. XSS can lead to session hijacking or data theft, but it’s mitigated by sanitizing user inputs, escaping outputs, and using Content Security Policies (CSP) to restrict script execution.
Date: 2025-10-30