# 使用内容安全策略缓解 XSS 攻击

**URL:** <https://meta.discourse.org/t/mitigate-xss-attacks-with-content-security-policy/104243>\
**Category:** Site Management\
**Tags:** how-to, content-security-policy\
**Created:** [2018年十二月14日 16:38 UTC](https://meta.discourse.org/t/mitigate-xss-attacks-with-content-security-policy/104243 "2018-12-14T16:38:20Z")\
**Posts on this page:** 1\
**Showing post:** 12

<div class="post-metadata">

**Author:** ![codinghorror](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/codinghorror/32/110067_2.png) [@codinghorror](https://meta.discourse.org/u/codinghorror)\
**Post date:** [2019年四月3日 06:03 UTC](https://meta.discourse.org/t/mitigate-xss-attacks-with-content-security-policy/104243/12 "2019-04-03T06:03:46Z")

</div>

8 posts were split to a new topic: [Protocol-less CDN URLs are problematic](https://meta.discourse.org/t/protocol-less-cdn-urls-are-problematic/113301)

---

_[View the full topic](https://meta.discourse.org/t/mitigate-xss-attacks-with-content-security-policy/104243)._
