LavaMoat / snow

Use Snow to finally secure your web app's same origin realms!
https://lavamoat.github.io/snow/demo/
MIT License
100 stars 9 forks source link

Fix for mXSS bypass #123

Closed weizman closed 1 year ago

weizman commented 1 year ago

Now with #118 we have CSP that prevents mXSS type of attacks, added tests to demonstrate that