We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Currently script server is not safe enough against XSS attacks. Should be fixed
Possible solution http://www.tornadoweb.org/en/stable/guide/security.html#cross-site-request-forgery-protection
The text was updated successfully, but these errors were encountered:
#79 protected Script server users against XSRF attacks
2e0035c
#245 #79 protected "html" outputFormat against XSS attacks
293d2a1
Added XSRF protection via tokens Analyzed and fixed XSS issues for the code (or added a description to Wiki, when it's unavoidable).
Sorry, something went wrong.
No branches or pull requests
Currently script server is not safe enough against XSS attacks. Should be fixed
Possible solution
http://www.tornadoweb.org/en/stable/guide/security.html#cross-site-request-forgery-protection
The text was updated successfully, but these errors were encountered: