OLD | NEW |
1 CONSOLE ERROR: line 5: The XSS Auditor refused to execute a script in 'http://12
7.0.0.1:8000/security/xssAuditor/resources/nph-cached.pl?q=%3cscript%3ealert(/XS
S/);%3c/script%3e' because its source code was found within the request. The ser
ver sent an 'X-XSS-Protection' header requesting this behavior. | 1 CONSOLE ERROR: line 5: The XSS Auditor refused to execute a script in 'http://12
7.0.0.1:8000/security/xssAuditor/resources/nph-cached.pl?q=%3cscript%3ealert(/XS
S/);%3c/script%3e' because its source code was found within the request. The ser
ver sent an 'X-XSS-Protection' header requesting this behavior. |
2 CONSOLE ERROR: line 5: The XSS Auditor refused to execute a script in 'http://12
7.0.0.1:8000/security/xssAuditor/resources/nph-cached.pl?q=%3cscript%3ealert(/XS
S/);%3c/script%3e' because its source code was found within the request. The ser
ver sent an 'X-XSS-Protection' header requesting this behavior. | 2 CONSOLE ERROR: line 5: The XSS Auditor refused to execute a script in 'http://12
7.0.0.1:8000/security/xssAuditor/resources/nph-cached.pl?q=%3cscript%3ealert(/XS
S/);%3c/script%3e' because its source code was found within the request. The ser
ver sent an 'X-XSS-Protection' header requesting this behavior. |
3 Check that an X-XSS-Protection header added by a 304 response does not override
one from the original request. | 3 Check that an X-XSS-Protection header added by a 304 response does not override
one from the original request. |
4 | 4 |
5 On success, you will see a series of "PASS" messages, followed by "TEST COMPLETE
". | 5 On success, you will see a series of "PASS" messages, followed by "TEST COMPLETE
". |
6 | 6 |
7 | 7 |
8 Two console messages should be generated, noting that JavaScript was blocked. | 8 Two console messages should be generated, noting that JavaScript was blocked. |
9 Check that the nonce is the same, meaning that the document was only generated o
nce: | 9 Check that the nonce is the same, meaning that the document was only generated o
nce: |
10 PASS frame1.contentDocument.querySelector("input").value == frame2.contentDocume
nt.querySelector("input").value is true | 10 PASS frame1.contentDocument.querySelector("input").value == frame2.contentDocume
nt.querySelector("input").value is true |
11 PASS successfullyParsed is true | 11 PASS successfullyParsed is true |
12 | 12 |
13 TEST COMPLETE | 13 TEST COMPLETE |
14 | 14 |
OLD | NEW |