3 ms·
> unless you are talking HttpOnly Which is precisely what the blog post that was hyperlinked in the sentence you were responding to was advocating.
by CiPHPerCoder 10y ago
> unless you are talking HttpOnly
Which is precisely what the blog post that was hyperlinked in the sentence you were responding to was advocating.
- andy_ppp 10y agoIf there are no XSS attacks against ReactJS then both ways protect me from both CSRF and XSS right? If you can show ReactJS XSS then I may need to reconsider.