Get the App
SLTechnology News&Howtos  ›  Network Security  › 

X-Frame-Options header not set

Shulou Source: shulou.com Published: 2022-06-01 10:02:19 10月02日 Update

Click hijack

Header ('Xmurf frames OptionsVal SAMEORIGIN')

When the value is DENY, the browser will refuse to load any frame page on the current page; if the value is SAMEORIGIN, the address of the frame page can only be the page under the same origin domain name; if the value is ALLOW-FROM, you can define the page address that allows frame to load.

Tags: Page address domain name browser homology duty browse Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno Microsoft Linux OPPO Reno Shulou Tech Info Shulou Technology