Home / Vulnerability Database / TypeScript : Overly permissive message posting policy
TypeScript

TypeScript : Overly permissive message posting policy

Classification

Overview

The application sends a cross-document message with an overly permissive target origin.

HTML5 allows to send messages to other windows via cross-document messaging. The target window must be specified. Overly permissive target origin may allow a malicious script to violate data confidentiality.

MEDIUM

DerScanner Severity Score

Do you want to fix TypeScript : Overly permissive message posting policy in your application?

See also

TypeScript

TypeScript : Unsafe Azure access control

TypeScript

TypeScript : Debug code

TypeScript

TypeScript : XSS protection is disabled