Multiple X-Frame-Options Header Entries
- Risk:
Medium
- Type:
- Passive
- CWE:
- CWE-1021
- Summary
X-Frame-Options (XFO) headers were found, a response with multiple XFO header entries may not be predictably treated by all user-agents.
- Solution
Ensure only a single X-Frame-Options header is present in the response.
- References
Top Security News
Common Alerts
MediumVulnerable JS Library
InformationalSec-Fetch-Mode Header is Missing
InformationalCross Site Scripting (Persistent) - Spider
InformationalNon-Storable Content
Latest CVE List
Common CWEs
Free online web security scanner