Security

What is Cross-Site Scripting?

Cross-site scripting (XSS) is an attack where malicious scripts are injected into a trusted website and executed in visitors' browsers. XSS can steal sessions and data; escaping output and a strong CSP are the main defenses.

Related Security terms

See how your website scores across SEO, GEO, performance, and more

Run a free audit