Skip to content

SEC-2099: X-XSS-Protection Header Support #2330

Closed
@spring-projects-issues

Description

@spring-projects-issues

Marten Deinum (Migrated from SEC-2099) said:

The OWASP top 10 has XSS high on there list of vulnerabilities it would be nice if Spring Security provided a filter which would wrap the request. Another filter could be used to set the X-XSS-Protection header (IE8+ uses this for added protection).

Metadata

Metadata

Assignees

Labels

in: webAn issue in web modules (web, webmvc)type: jiraAn issue that was migrated from JIRA

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions