x-frame options-sameorigin warning

Disclosed: 2014-05-18 04:26:51 By ethical_hacker To respondly
Unknown
Vulnerability Details
As the x-frame options set to same-origin it still may be vulnerable to clickjacking attacks how? by using this code <iframe src="link " sandbox="allow-top-navigation allow-same-origin allow-scripts"></iframe> Better explanation: http://www.skeletonscribe.net/2012/06/x-frame-options-sameorigin-warning.html
Actions
View on HackerOne
Report Stats
  • Report ID: 7945
  • State: Closed
  • Substate: resolved
  • Upvotes: 4
Share this report