Cross-Site Scripting (XSS) 2016-10-22 (Updated at 2018-5-19 ) Cross-Site Scripting (XSS) 来自Ruby on Rails Security Guide的一个章节,内容基本上是和特定web框架无关的,推荐一读。 web reading list Related Posts Session Management Cheat Sheet Tomcat里的各种Class Loader Encode String before Put It into URL