Sbouamri / Approver

Test repository
0 stars 0 forks source link

[ID: OWASP M7 - WEBVIEW WITH JAVASCRIPT ENABLED] #87

Open Sbouamri opened 5 years ago

Sbouamri commented 5 years ago

WebView components should not allow for the execution of Javascript as it can allow for malicious instructions injection and execution. REFERENCES:

Text Links
OWASP MOBILE TOP 10 - M7 - CLIENT SIDE INJECTION - Android Best Practice [[1]]. https://www.owasp.org/index.php/Mobile_Top_10_2014-M7