{"id":15094,"date":"2025-05-05T16:00:21","date_gmt":"2025-05-05T12:30:21","guid":{"rendered":"https:\/\/abalon.cloud\/blog\/?p=15094"},"modified":"2025-05-10T18:12:52","modified_gmt":"2025-05-10T14:42:52","slug":"what-is-xss-attack","status":"publish","type":"post","link":"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/","title":{"rendered":"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f"},"content":{"rendered":"<p>\u062d\u0645\u0644\u0647 XSS \u06a9\u0647 \u0645\u062e\u0641\u0641 \u0639\u0628\u0627\u0631\u062a \u00abCross-site Scripting\u00bb \u0627\u0633\u062a\u060c \u06cc\u06a9\u06cc \u0627\u0632 \u0645\u062a\u062f\u0627\u0648\u0644\u200c\u062a\u0631\u06cc\u0646 \u0631\u0648\u0634\u200c\u0647\u0627\u06cc \u0633\u0648\u0621\u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 \u0622\u0633\u06cc\u0628\u200c\u067e\u0630\u06cc\u0631\u06cc\u200c\u0647\u0627\u06cc \u0648\u0628\u200c\u0633\u0627\u06cc\u062a \u0627\u0633\u062a \u06a9\u0647 \u0628\u0627 \u0647\u062f\u0641 \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0635\u0648\u0631\u062a \u0645\u06cc\u200c\u06af\u06cc\u0631\u062f. \u0627\u06cc\u0646 \u0646\u0648\u0639 \u062d\u0645\u0644\u0647 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u062f \u0631\u0627\u0647 \u0631\u0627 \u0628\u0631\u0627\u06cc \u0633\u0631\u0642\u062a \u0627\u0637\u0644\u0627\u0639\u0627\u062a \u062d\u0633\u0627\u0633\u060c \u062c\u0639\u0644 \u0647\u0648\u06cc\u062a \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u06cc\u0627 \u062d\u062a\u06cc \u06a9\u0646\u062a\u0631\u0644 \u0628\u062e\u0634\u200c\u0647\u0627\u06cc\u06cc \u0627\u0632 \u06cc\u06a9 \u0648\u0628\u200c\u0633\u0627\u06cc\u062a \u0628\u0627\u0632 \u06a9\u0646\u062f.\u00a0 \u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647 \u0628\u0647 \u0627\u06cc\u0646 \u0645\u06cc\u200c\u067e\u0631\u062f\u0627\u0632\u06cc\u0645 \u06a9\u0647 \u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u060c \u0686\u0647 \u0627\u0646\u0648\u0627\u0639\u06cc \u062f\u0627\u0631\u062f \u0648 \u0686\u06af\u0648\u0646\u0647 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646 \u0627\u0632 \u0648\u0628\u200c\u0633\u0627\u06cc\u062a\u200c\u0647\u0627 \u062f\u0631 \u0628\u0631\u0627\u0628\u0631 \u0627\u06cc\u0646 \u062a\u0647\u062f\u06cc\u062f \u0645\u062d\u0627\u0641\u0638\u062a \u06a9\u0631\u062f.<\/p>\n<h2>\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f<\/h2>\n<p class=\"\" data-start=\"342\" data-end=\"683\">\u062f\u0631 \u062f\u0646\u06cc\u0627\u06cc \u0627\u0645\u0646\u06cc\u062a \u0648\u0628\u060c \u062d\u0645\u0644\u0647 XSS\u00a0 \u06cc\u06a9\u06cc \u0627\u0632 \u0631\u0627\u06cc\u062c\u200c\u062a\u0631\u06cc\u0646 \u0648 \u062f\u0631 \u0639\u06cc\u0646 \u062d\u0627\u0644 \u062e\u0637\u0631\u0646\u0627\u06a9\u200c\u062a\u0631\u06cc\u0646 \u0622\u0633\u06cc\u0628\u200c\u067e\u0630\u06cc\u0631\u06cc\u200c\u0647\u0627\u06cc\u06cc \u0627\u0633\u062a \u06a9\u0647 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u062f \u0627\u0645\u0646\u06cc\u062a \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0648 \u0627\u0637\u0644\u0627\u0639\u0627\u062a \u0622\u0646\u200c\u0647\u0627 \u0631\u0627 \u0628\u0647 \u062e\u0637\u0631 \u0628\u06cc\u0646\u062f\u0627\u0632\u062f. \u0627\u06cc\u0646 \u0646\u0648\u0639 \u062d\u0645\u0644\u0647 \u0632\u0645\u0627\u0646\u06cc \u0631\u062e \u0645\u06cc\u200c\u062f\u0647\u062f \u06a9\u0647 \u06cc\u06a9 \u0628\u0631\u0646\u0627\u0645\u0647 \u0648\u0628\u060c \u0648\u0631\u0648\u062f\u06cc\u200c\u0647\u0627\u06cc \u06a9\u0627\u0631\u0628\u0631 \u0631\u0627 \u0628\u0647\u200c\u062f\u0631\u0633\u062a\u06cc \u0641\u06cc\u0644\u062a\u0631 \u06cc\u0627 \u0627\u0639\u062a\u0628\u0627\u0631\u0633\u0646\u062c\u06cc \u0646\u06a9\u0646\u062f \u0648 \u062f\u0631 \u0646\u062a\u06cc\u062c\u0647\u060c \u0645\u0647\u0627\u062c\u0645 \u0628\u062a\u0648\u0627\u0646\u062f \u0627\u0633\u06a9\u0631\u06cc\u067e\u062a \u0645\u062e\u0631\u0628\u06cc \u0631\u0627 \u062f\u0631 \u0645\u062d\u062a\u0648\u0627\u06cc \u0633\u0627\u06cc\u062a \u062a\u0632\u0631\u06cc\u0642 \u06a9\u0646\u062f. \u0628\u0647 \u0632\u0628\u0627\u0646 \u0633\u0627\u062f\u0647\u200c\u062a\u0631\u060c \u062d\u0645\u0644\u0647 XSS \u06cc\u06a9 \u0631\u0648\u0634 \u062a\u0632\u0631\u06cc\u0642 \u06a9\u062f \u0645\u062e\u0631\u0628 \u062f\u0631 \u0635\u0641\u062d\u0627\u062a \u0648\u0628 \u0627\u0633\u062a \u06a9\u0647 \u0628\u0627\u0639\u062b \u0645\u06cc\u200c\u0634\u0648\u062f \u0627\u06cc\u0646 \u06a9\u062f\u0647\u0627 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0646\u0647\u0627\u06cc\u06cc \u0627\u062c\u0631\u0627 \u0634\u0648\u0646\u062f\u060c \u0628\u062f\u0648\u0646 \u0622\u0646\u200c\u06a9\u0647 \u0622\u0646\u200c\u0647\u0627 \u0645\u062a\u0648\u062c\u0647 \u0634\u0648\u0646\u062f.<\/p>\n<p class=\"\" data-start=\"1349\" data-end=\"1650\">\u0628\u0627 \u0627\u06cc\u0646\u06a9\u0647 \u062d\u0645\u0644\u0647 XSS \u0627\u0632 \u0627\u0648\u0627\u062e\u0631 \u062f\u0647\u0647 \u06f9\u06f0 \u0645\u06cc\u0644\u0627\u062f\u06cc \u0622\u063a\u0627\u0632 \u0634\u062f\u0647 \u0648 \u0646\u0632\u062f\u06cc\u06a9 \u0628\u0647 \u0633\u0647 \u062f\u0647\u0647 \u0627\u0632 \u0622\u0646 \u0645\u06cc\u200c\u06af\u0630\u0631\u062f\u060c \u0647\u0646\u0648\u0632 \u0647\u0645 \u06cc\u06a9\u06cc \u0627\u0632 \u0628\u0632\u0631\u06af\u200c\u062a\u0631\u06cc\u0646 \u062a\u0647\u062f\u06cc\u062f\u0647\u0627\u06cc \u0627\u0645\u0646\u06cc\u062a\u06cc \u062f\u0646\u06cc\u0627\u06cc \u0648\u0628 \u0645\u062d\u0633\u0648\u0628 \u0645\u06cc\u200c\u0634\u0648\u062f. <a href=\"https:\/\/owasp.org\/www-project-top-ten\/\">\u0637\u0628\u0642 \u06af\u0632\u0627\u0631\u0634\u200c OWASP<\/a>\u060c \u062d\u0645\u0644\u0647 XSS \u0647\u0645\u0686\u0646\u0627\u0646 \u062f\u0631 \u0645\u06cc\u0627\u0646 \u062f\u0647 \u0622\u0633\u06cc\u0628\u200c\u067e\u0630\u06cc\u0631\u06cc \u0627\u0635\u0644\u06cc \u0628\u0631\u0646\u0627\u0645\u0647\u200c\u0647\u0627\u06cc \u0648\u0628\u060c \u062f\u0631\u00a0 \u0631\u062f\u0647 \u0633\u0648\u0645 \u0642\u0631\u0627\u0631 \u062f\u0627\u0631\u062f \u0648\u00a0 \u0628\u0633\u06cc\u0627\u0631\u06cc \u0627\u0632 \u0648\u0628\u200c\u0633\u0627\u06cc\u062a\u200c\u0647\u0627 \u0648 \u0627\u067e\u0644\u06cc\u06a9\u06cc\u0634\u0646\u200c\u0647\u0627 \u0647\u0646\u0648\u0632 \u0628\u0647\u200c\u062f\u0631\u0633\u062a\u06cc \u062f\u0631 \u0628\u0631\u0627\u0628\u0631 \u0622\u0646 \u0627\u06cc\u0645\u0646\u200c\u0633\u0627\u0632\u06cc \u0646\u0634\u062f\u0647\u200c\u0627\u0646\u062f.<\/p>\n<h2 class=\"\" data-start=\"1923\" data-end=\"1949\">\u0686\u0631\u0627 \u062d\u0645\u0644\u0647 XSS \u062a\u0647\u062f\u06cc\u062f\u06cc \u062c\u062f\u06cc \u0627\u0633\u062a\u061f<\/h2>\n<p class=\"\" data-start=\"1951\" data-end=\"2175\">\u0628\u0632\u0631\u06af\u062a\u0631\u06cc\u0646 \u0622\u0633\u06cc\u0628\u06cc \u06a9\u0647 \u062d\u0645\u0644\u0647 XSS \u0648\u0627\u0631\u062f \u0645\u06cc\u200c\u06a9\u0646\u062f \u062e\u062f\u0634\u0647\u200c\u062f\u0627\u0631 \u06a9\u0631\u062f\u0646 \u0627\u0639\u062a\u0645\u0627\u062f \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0628\u0647 \u0648\u0628\u200c\u0633\u0627\u06cc\u062a\u200c\u0647\u0627\u06cc \u0645\u0639\u062a\u0628\u0631 \u0627\u0633\u062a. \u0645\u0647\u0627\u062c\u0645\u0627\u0646 \u0628\u0627 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632\u00a0 XSS\u060c \u06cc\u06a9 \u0648\u0628\u200c\u0633\u0627\u06cc\u062a \u0645\u0639\u062a\u0628\u0631 \u0648 \u067e\u0631\u0628\u0627\u0632\u062f\u06cc\u062f \u0631\u0627\u060c \u0628\u062f\u0648\u0646 \u0646\u06cc\u0627\u0632 \u0628\u0647 \u062f\u0633\u062a\u0631\u0633\u06cc \u0645\u0633\u062a\u0642\u06cc\u0645 \u0628\u0647 \u0633\u0631\u0648\u0631\u060c \u0628\u0647 \u0627\u0628\u0632\u0627\u0631\u06cc \u0628\u0631\u0627\u06cc \u062d\u0645\u0644\u0647 \u062a\u0628\u062f\u06cc\u0644 \u0645\u06cc\u200c\u06a9\u0646\u0646\u062f. \u0628\u0627\u0632\u062f\u06cc\u062f \u06a9\u0627\u0631\u0628\u0631\u0627\u0646\u00a0 \u0627\u0632 \u0627\u06cc\u0646 \u0648\u0628\u200c\u0633\u0627\u06cc\u062a\u200c\u0647\u0627\u060c \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u062f \u0645\u0646\u062c\u0631 \u0628\u0647 \u0627\u0641\u0634\u0627\u06cc \u0627\u0637\u0644\u0627\u0639\u0627\u062a \u062d\u0633\u0627\u0633\u060c \u0646\u0641\u0648\u0630 \u0628\u0647 \u062d\u0633\u0627\u0628\u200c\u0647\u0627\u06cc \u0634\u062e\u0635\u06cc\u060c \u06cc\u0627 \u062d\u062a\u06cc \u0622\u0644\u0648\u062f\u0647 \u0634\u062f\u0646 \u0633\u06cc\u0633\u062a\u0645 \u0622\u0646\u200c\u0647\u0627 \u0634\u0648\u062f. \u0627\u06cc\u0646 \u0622\u0633\u06cc\u0628 \u0641\u0642\u0637 \u0628\u0647 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0645\u062d\u062f\u0648\u062f \u0646\u0645\u06cc\u200c\u0634\u0648\u062f\u061b \u0628\u0644\u06a9\u0647 \u0627\u0639\u062a\u0628\u0627\u0631 \u0628\u0631\u0646\u062f \u0648 \u0627\u0645\u0646\u06cc\u062a \u06a9\u0644\u06cc \u0648\u0628\u200c\u0633\u0627\u06cc\u062a \u0646\u06cc\u0632 \u0628\u0647 \u0634\u062f\u062a \u062a\u062d\u062a\u200c\u062a\u0623\u062b\u06cc\u0631 \u0642\u0631\u0627\u0631 \u0645\u06cc\u200c\u06af\u06cc\u0631\u062f. \u0627\u0632 \u062f\u0633\u062a \u0631\u0641\u062a\u0646 \u0627\u0639\u062a\u0645\u0627\u062f \u06a9\u0627\u0631\u0628\u0631\u0627\u0646\u060c \u06a9\u0627\u0647\u0634 \u0628\u0627\u0632\u062f\u06cc\u062f\u060c \u0648 \u062d\u062a\u06cc \u062c\u0631\u06cc\u0645\u0647\u200c\u0647\u0627\u06cc \u0642\u0627\u0646\u0648\u0646\u06cc \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u0646\u062f \u067e\u06cc\u0627\u0645\u062f\u0647\u0627\u06cc \u0628\u0644\u0646\u062f\u0645\u062f\u062a \u0627\u06cc\u0646 \u0646\u0648\u0639 \u062d\u0645\u0644\u0647 \u0628\u0627\u0634\u0646\u062f.<\/p>\n<p class=\"\" data-start=\"1951\" data-end=\"2175\">\u0642\u0628\u0644 \u0627\u0632 \u0627\u06cc\u0646\u06a9\u0647 \u062f\u0631\u0628\u0627\u0631\u0647 \u0631\u0627\u0647\u06a9\u0627\u0631\u0647\u0627\u06cc \u0645\u0642\u0627\u0628\u0644\u0647 \u0628\u0627 \u062d\u0645\u0644\u0647 XSS \u0635\u062d\u0628\u062a \u06a9\u0646\u06cc\u0645\u060c \u0628\u0647\u062a\u0631 \u0627\u0633\u062a \u0628\u0627 \u0646\u062d\u0648\u0647 \u06a9\u0627\u0631 \u0648 \u0627\u0646\u0648\u0627\u0639 \u0645\u062e\u062a\u0644\u0641 \u0627\u06cc\u0646 \u062a\u0647\u062f\u06cc\u062f \u0622\u0634\u0646\u0627 \u0634\u0648\u06cc\u0645.<\/p>\n<h2 class=\"\" data-start=\"832\" data-end=\"861\">\u062d\u0645\u0644\u0647 XSS \u0686\u06af\u0648\u0646\u0647 \u06a9\u0627\u0631 \u0645\u06cc\u200c\u06a9\u0646\u062f\u061f<\/h2>\n<p class=\"\" data-start=\"863\" data-end=\"1230\"><img fetchpriority=\"high\" decoding=\"async\" class=\"aligncenter size-large wp-image-15271\" src=\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-02-1024x617.jpg\" alt=\"\" width=\"1024\" height=\"617\" srcset=\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-02-1024x617.jpg 1024w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-02-300x181.jpg 300w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-02-768x463.jpg 768w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-02-1536x926.jpg 1536w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-02-1200x723.jpg 1200w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-02-400x241.jpg 400w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-02-700x422.jpg 700w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-02.jpg 1560w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/p>\n<p class=\"\" data-start=\"863\" data-end=\"1230\">\u062d\u0645\u0644\u0647 XSS \u0645\u0639\u0645\u0648\u0644\u0627\u064b \u0627\u0632 \u0637\u0631\u06cc\u0642 \u0628\u062e\u0634\u200c\u0647\u0627\u06cc\u06cc \u0627\u0632 \u0633\u0627\u06cc\u062a \u0627\u0646\u062c\u0627\u0645 \u0645\u06cc\u200c\u0634\u0648\u062f \u06a9\u0647 \u0627\u0637\u0644\u0627\u0639\u0627\u062a \u0648\u0631\u0648\u062f\u06cc \u0627\u0632 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0631\u0627 \u062f\u0631\u06cc\u0627\u0641\u062a \u0645\u06cc\u200c\u06a9\u0646\u0646\u062f\u061b \u0645\u062b\u0644 \u0641\u0631\u0645\u200c\u0647\u0627\u06cc \u0648\u0631\u0648\u062f \u0627\u0637\u0644\u0627\u0639\u0627\u062a\u060c \u0628\u062e\u0634 \u0646\u0638\u0631\u0627\u062a\u060c \u0641\u06cc\u0644\u062f\u0647\u0627\u06cc \u062c\u0633\u062a\u062c\u0648 \u06cc\u0627 \u0627\u0646\u062c\u0645\u0646\u200c\u0647\u0627\u06cc \u06af\u0641\u062a\u200c\u0648\u06af\u0648. \u0645\u0647\u0627\u062c\u0645\u060c \u06a9\u062f\u06cc \u0645\u062e\u0631\u0628 (\u0645\u0639\u0645\u0648\u0644\u0627\u064b \u0628\u0627 \u0632\u0628\u0627\u0646\u200c\u0647\u0627\u06cc\u06cc \u0645\u062b\u0644 JavaScript \u06cc\u0627 HTML) \u0631\u0627 \u062f\u0631 \u0627\u06cc\u0646 \u0642\u0633\u0645\u062a\u200c\u0647\u0627 \u062a\u0632\u0631\u06cc\u0642 \u0645\u06cc\u200c\u06a9\u0646\u062f. \u0633\u067e\u0633\u060c \u0648\u0642\u062a\u06cc \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0639\u0627\u062f\u06cc \u0627\u0632 \u06cc\u06a9\u06cc \u0627\u0632 \u0635\u0641\u062d\u0627\u062a \u0633\u0627\u06cc\u062a \u0628\u0627\u0632\u062f\u06cc\u062f \u0645\u06cc\u200c\u06a9\u0646\u0646\u062f (\u0628\u0631\u0627\u06cc \u0645\u062b\u0627\u0644\u060c \u0647\u0646\u06af\u0627\u0645 \u0645\u0634\u0627\u0647\u062f\u0647 \u06cc\u06a9 \u06a9\u0627\u0645\u0646\u062a \u06cc\u0627 \u0646\u062a\u0627\u06cc\u062c \u062c\u0633\u062a\u062c\u0648)\u060c \u06a9\u062f \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u0622\u0646\u200c\u0647\u0627 \u0627\u062c\u0631\u0627 \u0645\u06cc\u200c\u0634\u0648\u062f. \u0645\u0631\u0648\u0631\u06af\u0631 \u0646\u06cc\u0632 \u0627\u06cc\u0646 \u06a9\u062f \u0631\u0627 \u0628\u062e\u0634\u06cc \u0627\u0632 \u0639\u0645\u0644\u06a9\u0631\u062f \u0648\u0628\u200c\u0633\u0627\u06cc\u062a \u062a\u0634\u062e\u06cc\u0635 \u062f\u0627\u062f\u0647 \u0648 \u0622\u0646 \u0631\u0627 \u0628\u062f\u0648\u0646 \u0647\u06cc\u0686 \u0647\u0634\u062f\u0627\u0631\u06cc \u062a\u0641\u0633\u06cc\u0631 \u0648 \u0627\u062c\u0631\u0627 \u0645\u06cc\u200c\u06a9\u0646\u062f.<\/p>\n<p class=\"\" data-start=\"760\" data-end=\"1109\">\u0628\u0631\u0627\u06cc \u0645\u062b\u0627\u0644\u060c \u062a\u0635\u0648\u0631 \u06a9\u0646\u06cc\u062f \u0645\u0647\u0627\u062c\u0645\u06cc \u0627\u0633\u06a9\u0631\u06cc\u067e\u062a \u0645\u062e\u0631\u0628\u06cc \u0631\u0627 \u062f\u0631 \u0628\u062e\u0634 \u0646\u0638\u0631\u0627\u062a \u06cc\u06a9 \u0648\u0628\u0644\u0627\u06af \u0645\u0646\u062a\u0634\u0631 \u06a9\u0631\u062f\u0647 \u0627\u0633\u062a. \u0627\u06af\u0631 \u0633\u06cc\u0633\u062a\u0645 \u0633\u0627\u06cc\u062a \u0627\u06cc\u0646 \u0648\u0631\u0648\u062f\u06cc \u0631\u0627 \u0628\u062f\u0648\u0646 \u0628\u0631\u0631\u0633\u06cc \u0630\u062e\u06cc\u0631\u0647 \u06a9\u0646\u062f\u060c \u0647\u0631 \u06a9\u0627\u0631\u0628\u0631\u06cc \u06a9\u0647 \u0622\u0646 \u0635\u0641\u062d\u0647 \u0631\u0627 \u0628\u0627\u0632 \u06a9\u0646\u062f\u060c \u0627\u0633\u06a9\u0631\u06cc\u067e\u062a \u0645\u0648\u0631\u062f \u0646\u0638\u0631 \u0631\u0627 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u062e\u0648\u062f \u0627\u062c\u0631\u0627 \u0645\u06cc\u200c\u06a9\u0646\u062f. \u0627\u06cc\u0646 \u06a9\u062f \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u062f \u0627\u0637\u0644\u0627\u0639\u0627\u062a \u062d\u0633\u0627\u0633 \u06a9\u0627\u0631\u0628\u0631 \u0645\u0627\u0646\u0646\u062f \u06a9\u0648\u06a9\u06cc\u200c\u0647\u0627 \u06cc\u0627 Session Token \u0631\u0627 \u0633\u0631\u0642\u062a \u06a9\u0646\u062f \u06cc\u0627 \u062d\u062a\u06cc \u0627\u0648 \u0631\u0627 \u0628\u0647 \u0635\u0641\u062d\u0627\u062a \u062c\u0639\u0644\u06cc \u0648 \u0622\u0644\u0648\u062f\u0647 \u0647\u062f\u0627\u06cc\u062a \u0646\u0645\u0627\u06cc\u062f.<\/p>\n<p class=\"\" data-start=\"1111\" data-end=\"1462\">\u062f\u0631 \u0628\u0631\u062e\u06cc \u0645\u0648\u0627\u0631\u062f\u060c \u06a9\u062f \u0645\u062e\u0631\u0628 \u0628\u0647\u200c\u0635\u0648\u0631\u062a \u0645\u0648\u0642\u062a\u06cc \u0627\u0632 \u0637\u0631\u06cc\u0642 URL \u06cc\u0627 \u062f\u0631\u062e\u0648\u0627\u0633\u062a HTTP \u0648\u0627\u0631\u062f \u0645\u06cc\u200c\u0634\u0648\u062f (Reflected XSS) \u0648 \u062f\u0631 \u0628\u0631\u062e\u06cc \u0645\u0648\u0627\u0631\u062f \u0628\u0647\u200c\u0635\u0648\u0631\u062a \u062f\u0627\u0626\u0645\u06cc \u062f\u0631 \u067e\u0627\u06cc\u06af\u0627\u0647 \u062f\u0627\u062f\u0647 \u0630\u062e\u06cc\u0631\u0647 \u0645\u06cc\u200c\u0634\u0648\u062f (Stored XSS). \u0628\u0647 \u0647\u0645\u06cc\u0646 \u062f\u0644\u06cc\u0644\u060c \u0634\u0646\u0627\u0633\u0627\u06cc\u06cc \u0648 \u062a\u0634\u062e\u06cc\u0635 \u0627\u06cc\u0646 \u0646\u0648\u0639 \u0622\u0633\u06cc\u0628\u200c\u067e\u0630\u06cc\u0631\u06cc \u0647\u0645\u06cc\u0634\u0647 \u0622\u0633\u0627\u0646 \u0646\u06cc\u0633\u062a. \u062a\u0623\u062b\u06cc\u0631 \u0627\u06cc\u0646 \u062d\u0645\u0644\u0647 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u062f \u0627\u0632 \u0646\u0645\u0627\u06cc\u0634 \u067e\u06cc\u0627\u0645\u200c\u0647\u0627\u06cc \u0645\u0632\u0627\u062d\u0645 \u062a\u0627 \u062f\u0633\u062a\u0631\u0633\u06cc \u063a\u06cc\u0631\u0645\u062c\u0627\u0632 \u0628\u0647 \u062d\u0633\u0627\u0628 \u06a9\u0627\u0631\u0628\u0631\u06cc \u06cc\u0627 \u0622\u0644\u0648\u062f\u0647\u200c\u0633\u0627\u0632\u06cc \u0633\u06cc\u0633\u062a\u0645 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0645\u062a\u063a\u06cc\u0631 \u0628\u0627\u0634\u062f. \u062f\u0631 \u0627\u062f\u0627\u0645\u0647 \u0628\u0627 \u0627\u0646\u0648\u0627\u0639 \u062d\u0645\u0644\u0647 XSS \u0622\u0634\u0646\u0627 \u0645\u06cc\u200c\u0634\u0648\u06cc\u0645.<\/p>\n<h2 data-start=\"231\" data-end=\"249\">\u0627\u0646\u0648\u0627\u0639 \u062d\u0645\u0644\u0647 XSS<\/h2>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-15272\" src=\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-03.jpg\" alt=\"\" width=\"780\" height=\"470\" srcset=\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-03.jpg 780w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-03-300x181.jpg 300w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-03-768x463.jpg 768w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-03-400x241.jpg 400w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-03-700x422.jpg 700w\" sizes=\"(max-width: 780px) 100vw, 780px\" \/><\/p>\n<p>\u062d\u0645\u0644\u0627\u062a XSS \u0631\u0627 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646 \u0628\u0647 \u0633\u0647 \u0646\u0648\u0639 \u0627\u0635\u0644\u06cc \u062a\u0642\u0633\u06cc\u0645 \u06a9\u0631\u062f: \u062d\u0645\u0644\u0647 Reflected XSS\u060c \u062d\u0645\u0644\u0647 Stored XSS\u00a0 \u0648 \u062d\u0645\u0644\u0647 DOM-based XSS. \u0647\u0631 \u06cc\u06a9 \u0627\u0632 \u0627\u06cc\u0646 \u0646\u0648\u0639 \u062d\u0645\u0644\u0627\u062a \u0631\u0648\u0634 \u062e\u0627\u0635\u06cc \u0628\u0631\u0627\u06cc \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631 \u062f\u0627\u0631\u0646\u062f \u0648 \u0634\u0646\u0627\u062e\u062a \u062a\u0641\u0627\u0648\u062a \u0645\u06cc\u0627\u0646 \u0622\u0646\u200c\u0647\u0627\u060c \u0646\u0642\u0634 \u0645\u0647\u0645\u06cc \u062f\u0631 \u0637\u0631\u0627\u062d\u06cc \u0631\u0627\u0647\u06a9\u0627\u0631\u0647\u0627\u06cc \u0645\u0642\u0627\u0628\u0644\u0647\u200c\u0627\u06cc \u0645\u0624\u062b\u0631 \u062f\u0627\u0631\u062f.<\/p>\n<h3 data-start=\"2672\" data-end=\"2893\">\u0645\u0642\u0627\u06cc\u0633\u0647\u00a0 \u0627\u0646\u0648\u0627\u0639 \u0645\u062e\u062a\u0644\u0641 \u062d\u0645\u0644\u0647 XSS \u062f\u0631 \u06cc\u06a9 \u0646\u06af\u0627\u0647<\/h3>\n<table style=\"border-collapse: collapse; width: 100%; height: 92px;\">\n<tbody>\n<tr style=\"height: 23px;\">\n<td style=\"width: 20%; height: 23px; text-align: center;\"><strong>\u0646\u0648\u0639 \u062d\u0645\u0644\u0647<\/strong><\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\"><strong>\u0645\u062d\u0644 \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f<\/strong><\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\"><strong>\u0646\u062d\u0648\u0647 \u062a\u0632\u0631\u06cc\u0642<\/strong><\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\"><strong>\u0645\u06cc\u0632\u0627\u0646 \u062e\u0637\u0631<\/strong><\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\"><strong>\u0648\u06cc\u0698\u06af\u06cc \u06a9\u0644\u06cc\u062f\u06cc<\/strong><\/td>\n<\/tr>\n<tr style=\"height: 23px;\">\n<td style=\"width: 20%; height: 23px;\"><strong>\u062d\u0645\u0644\u0647 Reflected XSS<\/strong><\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631<\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u0627\u0632 \u0637\u0631\u06cc\u0642 URL\u00a0 \u06cc\u0627 \u0648\u0631\u0648\u062f\u06cc \u0644\u062d\u0638\u0647\u200c\u0627\u06cc<\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u0645\u062a\u0648\u0633\u0637<\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u06a9\u062f \u0641\u0642\u0637 \u0632\u0645\u0627\u0646\u06cc \u0627\u062c\u0631\u0627 \u0645\u06cc\u200c\u0634\u0648\u062f \u06a9\u0647 \u06a9\u0627\u0631\u0628\u0631 \u0631\u0648\u06cc \u0644\u06cc\u0646\u06a9 \u062f\u0633\u062a\u06a9\u0627\u0631\u06cc\u200c\u0634\u062f\u0647 \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u062f.<\/td>\n<\/tr>\n<tr style=\"height: 23px;\">\n<td style=\"width: 20%; height: 23px;\"><strong>\u062d\u0645\u0644\u0647\u00a0 Stored XSS<\/strong><\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631<\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u0630\u062e\u06cc\u0631\u0647 \u062f\u0627\u0626\u0645\u06cc \u0631\u0648\u06cc \u0633\u0631\u0648\u0631 (\u0641\u0631\u0645\u200c\u0647\u0627 \u06cc\u0627 \u06a9\u0627\u0645\u0646\u062a\u200c\u0647\u0627)<\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u0628\u0627\u0644\u0627<\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u06a9\u062f \u0645\u062e\u0631\u0628 \u0628\u0647\u200c\u0635\u0648\u0631\u062a \u062f\u0627\u0626\u0645 \u062f\u0631 \u067e\u0627\u06cc\u06af\u0627\u0647\u200c\u062f\u0627\u062f\u0647 \u06cc\u0627 \u0635\u0641\u062d\u0647 \u0630\u062e\u06cc\u0631\u0647 \u0645\u06cc\u200c\u0634\u0648\u062f \u0648 \u0628\u0631\u0627\u06cc \u062a\u0645\u0627\u0645 \u0628\u0627\u0632\u062f\u06cc\u062f\u06a9\u0646\u0646\u062f\u06af\u0627\u0646 \u0627\u062c\u0631\u0627 \u062e\u0648\u0627\u0647\u062f \u0634\u062f.<\/td>\n<\/tr>\n<tr style=\"height: 23px;\">\n<td style=\"width: 20%; height: 23px;\"><strong>\u062d\u0645\u0644\u0647 DOM-based<\/strong><\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631 (\u0633\u0645\u062a \u06a9\u0644\u0627\u06cc\u0646\u062a)<\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u0627\u0632 \u0637\u0631\u06cc\u0642 \u062a\u063a\u06cc\u06cc\u0631\u0627\u062a \u062f\u0631 DOM \u062a\u0648\u0633\u0637 JavaScript<\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u0645\u062a\u063a\u06cc\u0631 (\u0648\u0627\u0628\u0633\u062a\u0647 \u0628\u0647 \u067e\u06cc\u0627\u062f\u0647\u200c\u0633\u0627\u0632\u06cc)<\/td>\n<td style=\"width: 20%; height: 23px; text-align: center;\">\u06a9\u062f \u0645\u0633\u062a\u0642\u06cc\u0645\u0627\u064b \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u0627\u062c\u0631\u0627 \u0645\u06cc\u200c\u0634\u0648\u062f \u0648 \u062f\u0631 \u0633\u0631\u0648\u0631 \u0630\u062e\u06cc\u0631\u0647 \u0646\u0645\u06cc\u200c\u06af\u0631\u062f\u062f\u060c \u0645\u0639\u0645\u0648\u0644\u0627\u064b \u067e\u06cc\u0686\u06cc\u062f\u0647\u200c\u062a\u0631\u00a0 \u0627\u0633\u062a \u0648 \u0633\u062e\u062a\u200c\u062a\u0631\u00a0 \u0634\u0646\u0627\u0633\u0627\u06cc\u06cc \u0645\u06cc\u200c\u0634\u0648\u062f.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h3 data-start=\"539\" data-end=\"571\">\u062d\u0645\u0644\u0647 Reflected XSS<\/h3>\n<p class=\"\" data-start=\"573\" data-end=\"814\">\u062f\u0631 \u0627\u06cc\u0646 \u0645\u062f\u0644 \u0627\u0632 \u062d\u0645\u0644\u0647 XSS \u06a9\u0647 \u0628\u0647 \u0646\u0627\u0645 \u00ab\u062d\u0645\u0644\u0647 \u0628\u0627\u0632\u062a\u0627\u0628\u06cc\u00bb \u0634\u0646\u0627\u062e\u062a\u0647 \u0645\u06cc\u200c\u0634\u0648\u062f\u060c \u06a9\u062f \u0645\u062e\u0631\u0628 \u0628\u0647\u200c\u0635\u0648\u0631\u062a \u0645\u0648\u0642\u062a\u06cc \u0648 \u0627\u0632 \u0637\u0631\u06cc\u0642 \u0644\u06cc\u0646\u06a9 \u06cc\u0627 \u062f\u0631\u062e\u0648\u0627\u0633\u062a \u062e\u0627\u0635\u06cc \u0628\u0647 \u0633\u0631\u0648\u0631 \u0627\u0631\u0633\u0627\u0644 \u0645\u06cc\u200c\u0634\u0648\u062f \u0648 \u0633\u0631\u0648\u0631 \u062f\u0631 \u067e\u0627\u0633\u062e\u060c \u0628\u062f\u0648\u0646 \u0627\u0646\u062c\u0627\u0645 \u0627\u0639\u062a\u0628\u0627\u0631\u0633\u0646\u062c\u06cc \u0635\u062d\u06cc\u062d\u060c \u0647\u0645\u0627\u0646 \u06a9\u062f \u0631\u0627 \u0628\u0647 \u0645\u0631\u0648\u0631\u06af\u0631 \u0642\u0631\u0628\u0627\u0646\u06cc \u0628\u0627\u0632\u062a\u0627\u0628 \u0645\u06cc\u200c\u062f\u0647\u062f. \u0645\u0631\u0648\u0631\u06af\u0631 \u0647\u0645 \u0622\u0646 \u0631\u0627 \u0628\u0647\u200c\u0639\u0646\u0648\u0627\u0646 \u0628\u062e\u0634\u06cc \u0627\u0632 \u0645\u062d\u062a\u0648\u0627\u06cc \u0639\u0627\u062f\u06cc \u0635\u0641\u062d\u0647 \u0627\u062c\u0631\u0627 \u0645\u06cc\u200c\u06a9\u0646\u062f.<\/p>\n<p class=\"\" data-start=\"816\" data-end=\"1201\">\u0627\u06cc\u0646 \u0646\u0648\u0639 \u062d\u0645\u0644\u0647 \u0645\u0639\u0645\u0648\u0644\u0627\u064b \u0627\u0632 \u0637\u0631\u06cc\u0642 \u0644\u06cc\u0646\u06a9\u200c\u0647\u0627\u06cc \u0641\u06cc\u0634\u06cc\u0646\u06af\u060c \u0627\u06cc\u0645\u06cc\u0644\u200c\u0647\u0627\u06cc \u062c\u0639\u0644\u06cc \u06cc\u0627 URL\u0647\u0627\u06cc \u062f\u0633\u062a\u06a9\u0627\u0631\u06cc\u200c\u0634\u062f\u0647 \u0627\u0646\u062c\u0627\u0645 \u0645\u06cc\u200c\u0634\u0648\u062f. \u0628\u0647\u200c\u0639\u0646\u0648\u0627\u0646 \u0645\u062b\u0627\u0644\u060c \u0645\u0647\u0627\u062c\u0645 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u062f \u0644\u06cc\u0646\u06a9\u06cc \u0628\u0627 \u067e\u0627\u0631\u0627\u0645\u062a\u0631\u0647\u0627\u06cc \u0622\u0644\u0648\u062f\u0647 \u0628\u0647 \u06a9\u062f \u062c\u0627\u0648\u0627\u0627\u0633\u06a9\u0631\u06cc\u067e\u062a \u0637\u0631\u0627\u062d\u06cc \u06a9\u0646\u062f \u0648 \u0622\u0646 \u0631\u0627 \u062f\u0631 \u06cc\u06a9 \u067e\u06cc\u0627\u0645 \u0627\u0631\u0633\u0627\u0644 \u06a9\u0646\u062f. \u0648\u0642\u062a\u06cc \u06a9\u0627\u0631\u0628\u0631 \u0631\u0648\u06cc \u0644\u06cc\u0646\u06a9 \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u062f\u060c \u06a9\u062f \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u0627\u0648 \u0627\u062c\u0631\u0627 \u0645\u06cc\u200c\u0634\u0648\u062f. \u0627\u0632 \u0622\u0646\u062c\u0627 \u06a9\u0647 \u0627\u06cc\u0646 \u0646\u0648\u0639 \u062d\u0645\u0644\u0647 \u00ab\u0645\u0648\u0642\u062a\u06cc\u00bb \u0627\u0633\u062a\u060c \u0647\u06cc\u0686 \u0627\u062b\u0631\u06cc \u0627\u0632 \u06a9\u062f \u062f\u0631 \u0633\u0631\u0648\u0631 \u0628\u0627\u0642\u06cc \u0646\u0645\u06cc\u200c\u0645\u0627\u0646\u062f \u0648 \u0641\u0642\u0637 \u062f\u0631 \u0647\u0645\u0627\u0646 \u0644\u062d\u0638\u0647\u200c\u06cc \u06a9\u0644\u06cc\u06a9 \u0627\u062a\u0641\u0627\u0642 \u0645\u06cc\u200c\u0627\u0641\u062a\u062f.<\/p>\n<p class=\"\" data-start=\"1203\" data-end=\"1331\">\u062e\u0637\u0631 \u0627\u06cc\u0646 \u0646\u0648\u0639 \u062d\u0645\u0644\u0647 \u062f\u0631 \u0622\u0646 \u0627\u0633\u062a \u06a9\u0647 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u062f \u0628\u0647\u200c\u0631\u0627\u062d\u062a\u06cc \u0627\u0637\u0644\u0627\u0639\u0627\u062a \u062d\u0633\u0627\u0633 \u06a9\u0627\u0631\u0628\u0631 \u0631\u0627 (\u0645\u062b\u0644 \u06a9\u0648\u06a9\u06cc \u06cc\u0627 Session Token) \u0627\u0633\u062a\u062e\u0631\u0627\u062c \u06a9\u0631\u062f\u0647 \u0648 \u0628\u0647 \u0645\u0647\u0627\u062c\u0645 \u0627\u0631\u0633\u0627\u0644 \u06a9\u0646\u062f.<\/p>\n<h3 data-start=\"1333\" data-end=\"1364\">\u062d\u0645\u0644\u0647 Stored XSS<\/h3>\n<p class=\"\" data-start=\"1366\" data-end=\"1662\">\u062f\u0631 \u0646\u0648\u0639 \u062f\u06cc\u06af\u0631\u06cc \u06a9\u0647 \u0628\u0647 \u00ab\u062d\u0645\u0644\u0647 XSS \u0630\u062e\u06cc\u0631\u0647\u200c\u0634\u062f\u0647\u00bb \u06cc\u0627 \u0645\u0627\u0646\u062f\u06af\u0627\u0631 \u0645\u0639\u0631\u0648\u0641 \u0627\u0633\u062a\u060c \u0627\u0633\u06a9\u0631\u06cc\u067e\u062a \u0645\u062e\u0631\u0628 \u0628\u0647\u200c\u0637\u0648\u0631 \u062f\u0627\u0626\u0645\u06cc \u062f\u0631 \u0633\u0631\u0648\u0631 \u0630\u062e\u06cc\u0631\u0647 \u0645\u06cc\u200c\u0634\u0648\u062f\u061b\u200c \u0645\u062b\u0644\u0627\u064b \u062f\u0631 \u06cc\u06a9 \u0641\u0631\u0645 \u0646\u0638\u0631\u0633\u0646\u062c\u06cc\u060c \u06a9\u0627\u0645\u0646\u062a\u060c \u067e\u0631\u0648\u0641\u0627\u06cc\u0644 \u06a9\u0627\u0631\u0628\u0631\u06cc \u06cc\u0627 \u0641\u06cc\u0644\u062f\u0647\u0627\u06cc \u0648\u0631\u0648\u062f\u06cc \u062f\u06cc\u06af\u0631 \u06a9\u0647 \u0627\u0637\u0644\u0627\u0639\u0627\u062a \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0631\u0627 \u062f\u0631\u06cc\u0627\u0641\u062a \u0648 \u0630\u062e\u06cc\u0631\u0647 \u0645\u06cc\u200c\u06a9\u0646\u0646\u062f. \u0632\u0645\u0627\u0646\u06cc \u06a9\u0647 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u062f\u06cc\u06af\u0631 \u0627\u0632 \u0635\u0641\u062d\u0647\u200c\u06cc \u0622\u0644\u0648\u062f\u0647 \u0628\u0627\u0632\u062f\u06cc\u062f \u0645\u06cc\u200c\u06a9\u0646\u0646\u062f\u060c \u06a9\u062f \u0630\u062e\u06cc\u0631\u0647\u200c\u0634\u062f\u0647 \u0628\u0647\u200c\u0635\u0648\u0631\u062a \u062e\u0648\u062f\u06a9\u0627\u0631 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u0622\u0646\u200c\u0647\u0627 \u0627\u062c\u0631\u0627 \u0645\u06cc\u200c\u0634\u0648\u062f.<\/p>\n<p class=\"\" data-start=\"1664\" data-end=\"1887\">\u0627\u06cc\u0646 \u0646\u0648\u0639 \u062d\u0645\u0644\u0647 \u062e\u0637\u0631\u0646\u0627\u06a9\u200c\u062a\u0631 \u0627\u0632 \u0646\u0648\u0639 Reflected \u0627\u0633\u062a\u060c \u0686\u0648\u0646 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u062f \u0628\u062f\u0648\u0646 \u0646\u06cc\u0627\u0632 \u0628\u0647 \u062a\u0639\u0627\u0645\u0644 \u0645\u0633\u062a\u0642\u06cc\u0645 \u0628\u0627 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0645\u062a\u0639\u062f\u062f\u060c \u0642\u0631\u0628\u0627\u0646\u06cc\u0627\u0646 \u0632\u06cc\u0627\u062f\u06cc \u0631\u0627 \u062a\u062d\u062a \u062a\u0623\u062b\u06cc\u0631 \u0642\u0631\u0627\u0631 \u062f\u0647\u062f. \u0628\u0647\u200c\u0639\u0644\u0627\u0648\u0647\u060c \u0686\u0648\u0646 \u06a9\u062f \u062f\u0631 \u0633\u0631\u0648\u0631 \u0630\u062e\u06cc\u0631\u0647 \u0634\u062f\u0647\u060c \u0647\u0631 \u0628\u0627\u0631 \u06a9\u0647 \u0635\u0641\u062d\u0647 \u0628\u0627\u0631\u06af\u0630\u0627\u0631\u06cc \u0634\u0648\u062f\u060c \u0627\u0633\u06a9\u0631\u06cc\u067e\u062a \u0627\u062c\u0631\u0627 \u0645\u06cc\u200c\u0634\u0648\u062f. \u0631\u0627\u0647\u06a9\u0627\u0631 \u0645\u0642\u0627\u0628\u0644\u0647 \u0628\u0627 \u062d\u0645\u0644\u0647 Stored XSS\u060c \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 \u0641\u06cc\u0644\u062a\u0631\u0647\u0627\u06cc \u0627\u0639\u062a\u0628\u0627\u0631\u0633\u0646\u062c\u06cc \u0648\u0631\u0648\u062f\u06cc\u060c \u0633\u06cc\u0633\u062a\u0645\u200c\u0647\u0627\u06cc escape \u06a9\u0631\u062f\u0646 \u062e\u0648\u062f\u06a9\u0627\u0631 \u0648 \u06a9\u062f\u0646\u0648\u06cc\u0633\u06cc \u0627\u0645\u0646 \u0627\u0633\u062a \u062a\u0627 \u0627\u0632 \u0630\u062e\u06cc\u0631\u0647\u200c\u0634\u062f\u0646 \u06a9\u062f\u0647\u0627\u06cc \u0645\u0634\u06a9\u0648\u06a9 \u062c\u0644\u0648\u06af\u06cc\u0631\u06cc \u0634\u0648\u062f.<\/p>\n<h3 data-start=\"2048\" data-end=\"2085\">\u062d\u0645\u0644\u0647 DOM-based XSS<\/h3>\n<p class=\"\" data-start=\"2087\" data-end=\"2397\">\u062f\u0631 \u0627\u06cc\u0646 \u0646\u0648\u0639 \u0627\u0632 \u062d\u0645\u0644\u0647 XSS\u060c \u0622\u0633\u06cc\u0628\u200c\u067e\u0630\u06cc\u0631\u06cc \u0646\u0647 \u062f\u0631 \u0633\u0631\u0648\u0631 \u0628\u0644\u06a9\u0647 \u062f\u0631 \u06a9\u062f\u0647\u0627\u06cc \u0633\u0645\u062a \u06a9\u0627\u0631\u0628\u0631 (client-side) \u0646\u0647\u0641\u062a\u0647 \u0627\u0633\u062a. \u0627\u0633\u06a9\u0631\u06cc\u067e\u062a \u0645\u062e\u0631\u0628 \u0627\u0632 \u0637\u0631\u06cc\u0642 \u062a\u063a\u06cc\u06cc\u0631 \u0633\u0627\u062e\u062a\u0627\u0631 DOM \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u0627\u062c\u0631\u0627 \u0645\u06cc\u200c\u0634\u0648\u062f\u060c \u0628\u062f\u0648\u0646 \u0627\u06cc\u0646\u06a9\u0647 \u06a9\u062f\u06cc \u0628\u0647 \u0633\u0631\u0648\u0631 \u0627\u0631\u0633\u0627\u0644 \u06cc\u0627 \u062f\u0631 \u0622\u0646 \u0630\u062e\u06cc\u0631\u0647 \u0634\u0648\u062f. \u0627\u06cc\u0646 \u0646\u0648\u0639 \u062d\u0645\u0644\u0647 \u067e\u06cc\u0686\u06cc\u062f\u0647\u200c\u062a\u0631 \u0627\u0633\u062a \u0648 \u0645\u0639\u0645\u0648\u0644\u0627\u064b \u062a\u0648\u0633\u0637 \u0627\u0633\u06a9\u0646\u0631\u0647\u0627\u06cc \u0627\u0645\u0646\u06cc\u062a\u06cc \u0645\u0639\u0645\u0648\u0644\u06cc \u06cc\u0627 \u0641\u0627\u06cc\u0631\u0648\u0627\u0644\u200c\u0647\u0627\u06cc \u062a\u062d\u062a \u0648\u0628 \u0628\u0647\u200c\u0631\u0627\u062d\u062a\u06cc \u0634\u0646\u0627\u0633\u0627\u06cc\u06cc \u0646\u0645\u06cc\u200c\u0634\u0648\u062f.<\/p>\n<p class=\"\" data-start=\"2399\" data-end=\"2670\">\u062d\u0645\u0644\u0647 DOM-based XSS \u0632\u0645\u0627\u0646\u06cc \u0631\u062e \u0645\u06cc\u200c\u062f\u0647\u062f \u06a9\u0647 \u0627\u067e\u0644\u06cc\u06a9\u06cc\u0634\u0646 \u0633\u0645\u062a \u06a9\u0627\u0631\u0628\u0631 (\u0645\u062b\u0644\u0627\u064b \u062c\u0627\u0648\u0627\u0627\u0633\u06a9\u0631\u06cc\u067e\u062a \u062f\u0627\u062e\u0644 \u0645\u0631\u0648\u0631\u06af\u0631) \u062f\u0627\u062f\u0647\u200c\u0647\u0627\u06cc\u06cc \u0631\u0627 \u06a9\u0647 \u0627\u0632 URL \u06cc\u0627 \u0633\u0627\u06cc\u0631 \u0648\u0631\u0648\u062f\u06cc\u200c\u0647\u0627 \u062f\u0631\u06cc\u0627\u0641\u062a \u06a9\u0631\u062f\u0647\u060c \u0628\u062f\u0648\u0646 \u0641\u06cc\u0644\u062a\u0631\u0633\u0627\u0632\u06cc \u0645\u0646\u0627\u0633\u0628\u060c \u0645\u0633\u062a\u0642\u06cc\u0645\u0627\u064b \u062f\u0631 \u0639\u0646\u0627\u0635\u0631 HTML \u06cc\u0627 \u062a\u0648\u0627\u0628\u0639 \u062e\u0637\u0631\u0646\u0627\u06a9 \u062c\u0627\u0648\u0627\u0627\u0633\u06a9\u0631\u06cc\u067e\u062a \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0645\u06cc\u200c\u06a9\u0646\u062f. \u0628\u0631\u0627\u06cc \u0645\u0642\u0627\u0628\u0644\u0647 \u0628\u0627 \u0627\u06cc\u0646 \u0646\u0648\u0639 \u062d\u0645\u0644\u0647\u060c \u0628\u0627\u06cc\u062f \u0627\u0632 \u062a\u06a9\u0646\u06cc\u06a9\u200c\u0647\u0627\u06cc \u0627\u06cc\u0645\u0646\u200c\u0633\u0627\u0632\u06cc \u06a9\u062f \u0633\u0645\u062a \u06a9\u0627\u0631\u0628\u0631 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0631\u062f\u060c \u0645\u0627\u0646\u0646\u062f \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 Trusted Types\u060c \u0641\u06cc\u0644\u062a\u0631 \u06a9\u0631\u062f\u0646 \u0645\u0646\u0627\u0628\u0639 \u0648\u0631\u0648\u062f\u06cc \u0648 \u0627\u062c\u062a\u0646\u0627\u0628 \u0627\u0632 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0645\u0633\u062a\u0642\u06cc\u0645 \u0627\u0632 \u0645\u0642\u0627\u062f\u06cc\u0631 \u06a9\u0646\u062a\u0631\u0644\u200c\u0634\u062f\u0647 \u062a\u0648\u0633\u0637 \u06a9\u0627\u0631\u0628\u0631 \u062f\u0631 \u0628\u062e\u0634\u200c\u0647\u0627\u06cc \u062d\u0633\u0627\u0633 DOM.<\/p>\n<h2 data-start=\"2399\" data-end=\"2670\">\u062d\u0645\u0644\u0647 XSS \u0628\u0627 \u062d\u0645\u0644\u0647 CSRF \u0686\u0647 \u062a\u0641\u0627\u0648\u062a\u06cc \u062f\u0627\u0631\u062f\u061f<\/h2>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" class=\"aligncenter size-full wp-image-15268\" src=\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-04.jpg\" alt=\"\" width=\"780\" height=\"470\" srcset=\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-04.jpg 780w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-04-300x181.jpg 300w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-04-768x463.jpg 768w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-04-400x241.jpg 400w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-04-700x422.jpg 700w\" sizes=\"(max-width: 780px) 100vw, 780px\" \/><\/p>\n<p data-start=\"2399\" data-end=\"2670\">\u062d\u0645\u0644\u0627\u062a XSS \u0648 CSRF \u0647\u0631 \u062f\u0648 \u0627\u0632 \u0645\u062a\u062f\u0627\u0648\u0644\u200c\u062a\u0631\u06cc\u0646 \u062a\u0647\u062f\u06cc\u062f\u0647\u0627\u06cc \u0627\u0645\u0646\u06cc\u062a\u06cc \u062f\u0631 \u062f\u0646\u06cc\u0627\u06cc \u0648\u0628 \u0647\u0633\u062a\u0646\u062f\u060c \u0627\u0645\u0627 \u062a\u0641\u0627\u0648\u062a\u200c\u0647\u0627\u06cc \u0628\u0646\u06cc\u0627\u062f\u06cc\u0646\u06cc \u062f\u0627\u0631\u0646\u062f. \u0627\u0645\u0627 \u0627\u06cc\u0646 \u062a\u0641\u0627\u0648\u062a\u200c\u0647\u0627 \u062f\u0631 \u062d\u0645\u0644\u0647 XSS \u0628\u0627 \u062d\u0645\u0644\u0647 <a href=\"https:\/\/abalon.cloud\/blog\/what-is-csrf\/\">CSRF \u0686\u06cc\u0633\u062a<\/a>\u061f \u062f\u0631 \u062d\u0645\u0644\u0647 XSS\u060c \u0645\u0647\u0627\u062c\u0645 \u062a\u0644\u0627\u0634 \u0645\u06cc\u200c\u06a9\u0646\u062f \u0627\u0633\u06a9\u0631\u06cc\u067e\u062a\u06cc \u0645\u062e\u0631\u0628 \u0631\u0627 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631 \u0627\u062c\u0631\u0627 \u06a9\u0646\u062f \u062a\u0627 \u0628\u0647 \u0627\u0637\u0644\u0627\u0639\u0627\u062a\u06cc \u0645\u062b\u0644 \u06a9\u0648\u06a9\u06cc\u200c\u0647\u0627 \u06cc\u0627 \u0645\u062d\u062a\u0648\u0627\u06cc \u0635\u0641\u062d\u0647 \u062f\u0633\u062a\u0631\u0633\u06cc \u067e\u06cc\u062f\u0627 \u06a9\u0646\u062f. \u0627\u0645\u0627 \u062f\u0631 CSRF\u060c \u0647\u062f\u0641 \u0627\u062c\u0631\u0627\u06cc \u0645\u062e\u0641\u06cc\u0627\u0646\u0647 \u062f\u0631\u062e\u0648\u0627\u0633\u062a\u200c\u0647\u0627\u06cc\u06cc \u0627\u0633\u062a \u06a9\u0647 \u0628\u0647\u200c\u0638\u0627\u0647\u0631 \u0627\u0632 \u0633\u0645\u062a \u06a9\u0627\u0631\u0628\u0631 \u0645\u0639\u062a\u0628\u0631 \u0627\u0631\u0633\u0627\u0644 \u0634\u062f\u0647\u200c\u0627\u0646\u062f\u060c \u0628\u062f\u0648\u0646 \u0646\u06cc\u0627\u0632 \u0628\u0647 \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631. \u0628\u0647\u200c\u0639\u0628\u0627\u0631\u062a\u06cc\u060c XSS \u0627\u0639\u062a\u0645\u0627\u062f \u06a9\u0627\u0631\u0628\u0631 \u0628\u0647 \u0633\u0627\u06cc\u062a \u0631\u0627 \u0647\u062f\u0641 \u0645\u06cc\u200c\u06af\u06cc\u0631\u062f\u060c \u062f\u0631 \u062d\u0627\u0644\u06cc \u06a9\u0647 CSRF \u0627\u0632 \u0627\u0639\u062a\u0645\u0627\u062f \u0633\u0627\u06cc\u062a \u0628\u0647 \u06a9\u0627\u0631\u0628\u0631 \u0633\u0648\u0621\u200c\u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0645\u06cc\u200c\u06a9\u0646\u062f.<\/p>\n<table style=\"border-collapse: collapse; width: 76.1581%; height: 173px;\">\n<tbody>\n<tr style=\"height: 23px;\">\n<td style=\"width: 9.44492%; height: 23px;\"><\/td>\n<td style=\"width: 34.774%; height: 23px;\">\u062d\u0645\u0644\u0647 XSS<\/td>\n<td style=\"width: 36.5505%; height: 23px;\">\u062d\u0645\u0644\u0647 CSRF<\/td>\n<\/tr>\n<tr style=\"height: 23px;\">\n<td style=\"width: 9.44492%; height: 23px;\">\u0646\u0648\u0639 \u062a\u0647\u062f\u06cc\u062f<\/td>\n<td style=\"width: 34.774%; height: 23px;\">\u0627\u062c\u0631\u0627\u06cc \u06a9\u062f \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631<\/td>\n<td style=\"width: 36.5505%; height: 23px;\">\u0627\u062c\u0631\u0627\u06cc \u062f\u0631\u062e\u0648\u0627\u0633\u062a\u200c\u0647\u0627\u06cc \u0646\u0627\u062e\u0648\u0627\u0633\u062a\u0647 \u0627\u0632 \u0637\u0631\u0641 \u06a9\u0627\u0631\u0628\u0631 \u0645\u0639\u062a\u0628\u0631<\/td>\n<\/tr>\n<tr style=\"height: 23px;\">\n<td style=\"width: 9.44492%; height: 23px;\">\u067e\u06cc\u0634\u200c\u0646\u06cc\u0627\u0632<\/td>\n<td style=\"width: 34.774%; height: 23px;\">\u0645\u0639\u0645\u0648\u0644\u0627\u064b \u0646\u06cc\u0627\u0632 \u0628\u0647 \u062a\u0639\u0627\u0645\u0644 \u06a9\u0627\u0631\u0628\u0631 (\u0645\u062b\u0644\u0627\u064b \u06a9\u0644\u06cc\u06a9 \u0631\u0648\u06cc \u0644\u06cc\u0646\u06a9)<\/td>\n<td style=\"width: 36.5505%; height: 23px;\">\u0641\u0642\u0637 \u0646\u06cc\u0627\u0632 \u0628\u0647 \u0644\u0627\u06af\u06cc\u0646 \u0628\u0648\u062f\u0646 \u06a9\u0627\u0631\u0628\u0631 \u062f\u0631 \u0633\u0627\u06cc\u062a \u0642\u0631\u0628\u0627\u0646\u06cc<\/td>\n<\/tr>\n<tr style=\"height: 23px;\">\n<td style=\"width: 9.44492%; height: 23px;\">\u062f\u0633\u062a\u0631\u0633\u06cc<\/td>\n<td style=\"width: 34.774%; height: 23px;\">\u0627\u0645\u06a9\u0627\u0646 \u062e\u0648\u0627\u0646\u062f\u0646 \u0648 \u062a\u063a\u06cc\u06cc\u0631 \u0645\u062d\u062a\u0648\u0627\u060c \u0633\u0631\u0642\u062a \u06a9\u0648\u06a9\u06cc\u200c\u0647\u0627\u060c \u062a\u0632\u0631\u06cc\u0642 \u06a9\u062f<\/td>\n<td style=\"width: 36.5505%; height: 23px;\">\u062a\u0646\u0647\u0627 \u0627\u0645\u06a9\u0627\u0646 \u0627\u062c\u0631\u0627\u06cc \u0639\u0645\u0644\u06cc\u0627\u062a \u0645\u062c\u0627\u0632 \u062f\u0631 \u062d\u0633\u0627\u0628 \u06a9\u0627\u0631\u0628\u0631<\/td>\n<\/tr>\n<tr style=\"height: 23px;\">\n<td style=\"width: 9.44492%; height: 23px;\">\u0646\u062d\u0648\u0647 \u0627\u062c\u0631\u0627<\/td>\n<td style=\"width: 34.774%; height: 23px;\">\u06a9\u062f \u062f\u0631 \u062e\u0648\u062f \u0648\u0628\u200c\u0633\u0627\u06cc\u062a \u06cc\u0627 \u0648\u0631\u0648\u062f\u06cc\u200c\u0647\u0627\u06cc \u0622\u0646 \u062a\u0632\u0631\u06cc\u0642 \u0645\u06cc\u200c\u0634\u0648\u062f<\/td>\n<td style=\"width: 36.5505%; height: 23px;\">\u0627\u0632 \u0637\u0631\u06cc\u0642 \u06cc\u06a9 \u0633\u0627\u06cc\u062a \u062e\u0627\u0631\u062c\u06cc \u06cc\u0627 \u0644\u06cc\u0646\u06a9 \u062c\u0639\u0644\u06cc \u0628\u0647 \u0648\u0628\u200c\u0633\u0627\u06cc\u062a \u0647\u062f\u0641<\/td>\n<\/tr>\n<tr style=\"height: 23px;\">\n<td style=\"width: 9.44492%; height: 23px;\">\u0647\u062f\u0641 \u0627\u0635\u0644\u06cc<\/td>\n<td style=\"width: 34.774%; height: 23px;\">\u06a9\u0627\u0631\u0628\u0631 \u0648 \u0645\u0631\u0648\u0631\u06af\u0631 \u0627\u0648<\/td>\n<td style=\"width: 36.5505%; height: 23px;\">\u0633\u0631\u0648\u0631 \u0648 \u0639\u0645\u0644\u06cc\u0627\u062a \u0645\u0631\u062a\u0628\u0637 \u0628\u0627 \u062d\u0633\u0627\u0628 \u06a9\u0627\u0631\u0628\u0631<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h2 data-start=\"131\" data-end=\"165\">\u0686\u0637\u0648\u0631 \u062c\u0644\u0648\u06cc \u062d\u0645\u0644\u0627\u062a XSS \u0631\u0627 \u0628\u06af\u06cc\u0631\u06cc\u0645\u061f<\/h2>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-15269\" src=\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-05.jpg\" alt=\"\" width=\"780\" height=\"470\" srcset=\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-05.jpg 780w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-05-300x181.jpg 300w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-05-768x463.jpg 768w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-05-400x241.jpg 400w, https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-05-700x422.jpg 700w\" sizes=\"(max-width: 780px) 100vw, 780px\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>\u0627\u0632 \u0645\u0647\u0645\u200c\u062a\u0631\u06cc\u0646 \u0627\u0642\u062f\u0627\u0645\u0627\u062a\u060c \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 WAF (\u0641\u0627\u06cc\u0631\u0648\u0627\u0644 \u0648\u0628 \u0627\u067e\u0644\u06cc\u06a9\u06cc\u0634\u0646) \u0627\u0633\u062a. \u0631\u0627\u0647\u06a9\u0627\u0631 WAF \u0628\u0627 \u0646\u0638\u0627\u0631\u062a \u0628\u0631 \u062a\u0631\u0627\u0641\u06cc\u06a9 \u0648\u0631\u0648\u062f\u06cc\u060c \u0627\u0633\u06a9\u0631\u06cc\u067e\u062a\u200c\u0647\u0627\u06cc \u0645\u0634\u06a9\u0648\u06a9 \u0631\u0627 \u0634\u0646\u0627\u0633\u0627\u06cc\u06cc \u0648 \u0645\u0633\u062f\u0648\u062f \u0645\u06cc\u200c\u06a9\u0646\u062f \u0648 \u06cc\u06a9\u06cc \u0627\u0632 \u0645\u0624\u062b\u0631\u062a\u0631\u06cc\u0646 \u0631\u0627\u0647\u06a9\u0627\u0631\u0647\u0627 \u0628\u0631\u0627\u06cc \u0645\u0642\u0627\u0628\u0644\u0647 \u0628\u0627 XSS \u0628\u0647 \u0634\u0645\u0627\u0631 \u0645\u06cc\u200c\u0631\u0648\u062f.<\/p>\n<h3 data-start=\"167\" data-end=\"508\"><strong data-start=\"167\" data-end=\"212\">\u0627\u0642\u062f\u0627\u0645\u0627\u062a\u06cc \u06a9\u0647 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u0646\u062f \u0627\u0646\u062c\u0627\u0645 \u062f\u0647\u0646\u062f:<\/strong><\/h3>\n<p data-start=\"167\" data-end=\"508\">\u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0628\u0627\u06cc\u062f \u0645\u0631\u0627\u0642\u0628 \u0644\u06cc\u0646\u06a9\u200c\u0647\u0627\u06cc \u0646\u0627\u0634\u0646\u0627\u0633 \u062f\u0631 \u067e\u06cc\u0627\u0645\u200c\u0647\u0627\u060c \u0627\u06cc\u0645\u06cc\u0644\u200c\u0647\u0627 \u0648 \u0634\u0628\u06a9\u0647\u200c\u0647\u0627\u06cc \u0627\u062c\u062a\u0645\u0627\u0639\u06cc \u0628\u0627\u0634\u0646\u062f. \u0628\u0633\u06cc\u0627\u0631\u06cc \u0627\u0632 \u062d\u0645\u0644\u0627\u062a XSS \u0627\u0632 \u0637\u0631\u06cc\u0642 \u0641\u06cc\u0634\u06cc\u0646\u06af \u0622\u063a\u0627\u0632 \u0645\u06cc\u200c\u0634\u0648\u0646\u062f\u060c \u067e\u0633 \u0634\u0646\u0627\u0633\u0627\u06cc\u06cc \u0648 \u06af\u0632\u0627\u0631\u0634 \u0627\u06cc\u0646 \u067e\u06cc\u0627\u0645\u200c\u0647\u0627 \u0628\u0647 \u062a\u06cc\u0645\u200c\u0647\u0627\u06cc \u0627\u0645\u0646\u06cc\u062a\u06cc \u0645\u0647\u0645 \u0627\u0633\u062a. \u0647\u0645\u0686\u0646\u06cc\u0646 \u0628\u0647\u062a\u0631 \u0627\u0633\u062a \u0642\u0628\u0644 \u0627\u0632 \u06a9\u0644\u06cc\u06a9 \u0631\u0648\u06cc \u0644\u06cc\u0646\u06a9\u200c\u0647\u0627\u060c \u0622\u062f\u0631\u0633 \u06a9\u0627\u0645\u0644 \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u06a9\u0646\u0646\u062f \u0648 \u0627\u0632 \u0645\u0639\u062a\u0628\u0631 \u0628\u0648\u062f\u0646 \u0622\u0646 \u0627\u0637\u0645\u06cc\u0646\u0627\u0646 \u062d\u0627\u0635\u0644 \u0646\u0645\u0627\u06cc\u0646\u062f.<\/p>\n<h3 data-start=\"510\" data-end=\"848\"><strong data-start=\"510\" data-end=\"573\">\u0627\u0642\u062f\u0627\u0645\u0627\u062a\u06cc \u06a9\u0647 \u062a\u0648\u0633\u0639\u0647\u200c\u062f\u0647\u0646\u062f\u06af\u0627\u0646 \u0648 \u062a\u06cc\u0645\u200c\u0647\u0627\u06cc \u0627\u0645\u0646\u06cc\u062a\u06cc \u0628\u0627\u06cc\u062f \u0627\u0646\u062c\u0627\u0645 \u062f\u0647\u0646\u062f:<\/strong><\/h3>\n<p data-start=\"510\" data-end=\"848\">\u0628\u0631\u0631\u0633\u06cc \u0648 \u0627\u0639\u062a\u0628\u0627\u0631\u0633\u0646\u062c\u06cc \u0648\u0631\u0648\u062f\u06cc \u06a9\u0627\u0631\u0628\u0631\u0627\u0646\u060c \u062c\u0644\u0648\u06af\u06cc\u0631\u06cc \u0627\u0632 \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f \u0645\u062e\u0631\u0628 \u0628\u0627 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 \u00ab\u062a\u0628\u062f\u06cc\u0644 \u062e\u0631\u0648\u062c\u06cc\u00bb (output encoding)\u060c \u062d\u0630\u0641 \u062a\u06af\u200c\u0647\u0627\u06cc \u0645\u0634\u06a9\u0648\u06a9 \u0648 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 \u0633\u06cc\u0627\u0633\u062a\u200c\u0647\u0627\u06cc \u0627\u0645\u0646\u06cc\u062a\u06cc \u0645\u062b\u0644 CSP \u0627\u0632 \u0631\u0627\u0647\u06a9\u0627\u0631\u0647\u0627\u06cc \u0627\u0635\u0644\u06cc \u0647\u0633\u062a\u0646\u062f. \u0647\u0645\u0686\u0646\u06cc\u0646\u060c \u0627\u062c\u0631\u0627\u06cc \u062a\u0633\u062a\u200c\u0647\u0627\u06cc \u0627\u0645\u0646\u06cc\u062a\u06cc \u0648 \u0628\u0631\u0631\u0633\u06cc \u0645\u062f\u0627\u0648\u0645 \u06a9\u062f \u0628\u0647 \u0634\u0646\u0627\u0633\u0627\u06cc\u06cc \u0622\u0633\u06cc\u0628\u200c\u067e\u0630\u06cc\u0631\u06cc\u200c\u0647\u0627 \u06a9\u0645\u06a9 \u0645\u06cc\u200c\u06a9\u0646\u062f.<\/p>\n<h2 data-start=\"55\" data-end=\"67\">\u062c\u0645\u0639\u200c\u0628\u0646\u062f\u06cc<\/h2>\n<p class=\"\" data-start=\"69\" data-end=\"359\">\u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647 \u0627\u0632 \u0628\u0644\u0627\u06af \u0622\u0628\u0627\u0644\u0648\u0646\u060c \u0628\u0627 \u062d\u0645\u0644\u0647 XSS \u06cc\u0627 \u00abCross-Site Scripting\u00bb \u0622\u0634\u0646\u0627 \u0634\u062f\u06cc\u0645 \u0648 \u0646\u062d\u0648\u0647 \u0639\u0645\u0644\u06a9\u0631\u062f \u0622\u0646 \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u06a9\u0631\u062f\u06cc\u0645. \u062f\u06cc\u062f\u06cc\u0645 \u06a9\u0647 \u0627\u06cc\u0646 \u0646\u0648\u0639 \u062d\u0645\u0644\u0647 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u062f \u0628\u0627\u0639\u062b \u0627\u062c\u0631\u0627\u06cc \u0627\u0633\u06a9\u0631\u06cc\u067e\u062a\u200c\u0647\u0627\u06cc \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0634\u0648\u062f \u0648 \u0627\u0637\u0644\u0627\u0639\u0627\u062a \u062d\u0633\u0627\u0633 \u0622\u0646\u200c\u0647\u0627 \u0631\u0627 \u0628\u0647 \u062e\u0637\u0631 \u0628\u06cc\u0646\u062f\u0627\u0632\u062f. \u0633\u067e\u0633 \u0628\u0647 \u0627\u0646\u0648\u0627\u0639 \u0645\u062e\u062a\u0644\u0641 \u062d\u0645\u0644\u0647 XSS \u067e\u0631\u062f\u0627\u062e\u062a\u06cc\u0645 \u0648 \u062a\u0641\u0627\u0648\u062a \u0622\u0646\u200c\u0647\u0627 \u0631\u0627 \u062a\u0648\u0636\u06cc\u062d \u062f\u0627\u062f\u06cc\u0645. \u0628\u0631\u0627\u06cc \u062c\u0644\u0648\u06af\u06cc\u0631\u06cc \u0627\u0632 \u0627\u06cc\u0646 \u062d\u0645\u0644\u0627\u062a\u060c \u0627\u0642\u062f\u0627\u0645\u0627\u062a \u0645\u062e\u062a\u0644\u0641\u06cc \u062f\u0631 \u062f\u0648 \u0633\u0637\u062d \u06a9\u0627\u0631\u0628\u0631 \u0648 \u062a\u0648\u0633\u0639\u0647\u200c\u062f\u0647\u0646\u062f\u0647 \u0645\u0637\u0631\u062d \u0634\u062f\u061b \u0627\u0632 \u0634\u0646\u0627\u0633\u0627\u06cc\u06cc \u0644\u06cc\u0646\u06a9\u200c\u0647\u0627\u06cc \u0645\u0634\u06a9\u0648\u06a9 \u06af\u0631\u0641\u062a\u0647 \u062a\u0627 \u0627\u0639\u062a\u0628\u0627\u0631\u0633\u0646\u062c\u06cc \u0648\u0631\u0648\u062f\u06cc\u200c\u0647\u0627\u060c \u062d\u0630\u0641 \u06a9\u062f \u0645\u062e\u0631\u0628 \u0648 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 \u0631\u0648\u0634\u200c\u0647\u0627\u06cc\u06cc \u0645\u062b\u0644 encoding. \u0647\u0645\u0686\u0646\u06cc\u0646 \u062a\u0623\u06a9\u06cc\u062f \u06a9\u0631\u062f\u06cc\u0645 \u06a9\u0647 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 WAF (\u062f\u06cc\u0648\u0627\u0631 \u0622\u062a\u0634 \u0628\u0631\u0646\u0627\u0645\u0647\u200c\u0647\u0627\u06cc \u0648\u0628) \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u062f \u0646\u0642\u0634 \u062d\u06cc\u0627\u062a\u06cc \u062f\u0631 \u0634\u0646\u0627\u0633\u0627\u06cc\u06cc \u0648 \u0645\u0633\u062f\u0648\u062f\u0633\u0627\u0632\u06cc \u0627\u06cc\u0646 \u0646\u0648\u0639 \u062a\u0647\u062f\u06cc\u062f\u0627\u062a \u062f\u0627\u0634\u062a\u0647 \u0628\u0627\u0634\u062f. \u0628\u0627 \u067e\u06cc\u0627\u062f\u0647\u200c\u0633\u0627\u0632\u06cc \u0627\u06cc\u0646 \u0631\u0648\u0634\u200c\u0647\u0627\u060c \u0645\u06cc\u200c\u062a\u0648\u0627\u0646 \u0633\u0637\u062d \u0627\u0645\u0646\u06cc\u062a \u0648\u0628\u200c\u0633\u0627\u06cc\u062a\u200c\u0647\u0627 \u0631\u0627 \u0628\u0647 \u0634\u06a9\u0644 \u0686\u0634\u0645\u200c\u06af\u06cc\u0631\u06cc \u0627\u0641\u0632\u0627\u06cc\u0634 \u062f\u0627\u062f \u0648 \u0627\u0632 \u0622\u0633\u06cc\u0628\u200c\u067e\u0630\u06cc\u0631\u06cc \u062f\u0631 \u0628\u0631\u0627\u0628\u0631 \u062d\u0645\u0644\u0627\u062a XSS \u062c\u0644\u0648\u06af\u06cc\u0631\u06cc \u06a9\u0631\u062f.<\/p>\n<p data-start=\"2672\" data-end=\"2893\">\n","protected":false},"excerpt":{"rendered":"<p>\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061b \u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647 \u0622\u0628\u0627\u0644\u0648\u0646\u060c \u0627\u0646\u0648\u0627\u0639 \u062d\u0645\u0644\u0627\u062a XSS\u060c \u0646\u062d\u0648\u0647 \u0639\u0645\u0644\u06a9\u0631\u062f \u0622\u0646\u200c\u0647\u0627 \u0648 \u062a\u0647\u062f\u06cc\u062f\u0647\u0627\u06cc \u0646\u0627\u0634\u06cc \u0627\u0632 \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f\u0647\u0627\u06cc \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u0645\u06cc\u200c\u06a9\u0646\u06cc\u0645.<\/p>\n","protected":false},"author":32,"featured_media":15270,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","spc_primary_category":-1},"categories":[40],"tags":[],"class_list":["post-15094","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v25.8 (Yoast SEO v25.8) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061b \u0628\u0631\u0631\u0633\u06cc \u062c\u0627\u0645\u0639 \u0645\u0641\u0647\u0648\u0645 Cross-Site Scripting<\/title>\n<meta name=\"description\" content=\"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f \u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647\u060c \u0627\u0646\u0648\u0627\u0639 \u062d\u0645\u0644\u0627\u062a XSS\u060c \u0646\u062d\u0648\u0647 \u0639\u0645\u0644\u06a9\u0631\u062f \u0622\u0646\u200c\u0647\u0627 \u0648 \u062a\u0647\u062f\u06cc\u062f\u0647\u0627\u06cc \u0646\u0627\u0634\u06cc \u0627\u0632 \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f\u0647\u0627\u06cc \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u0645\u06cc\u200c\u06a9\u0646\u06cc\u0645.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/\" \/>\n<meta property=\"og:locale\" content=\"fa_IR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f\" \/>\n<meta property=\"og:description\" content=\"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f \u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647\u060c \u0627\u0646\u0648\u0627\u0639 \u062d\u0645\u0644\u0627\u062a XSS\u060c \u0646\u062d\u0648\u0647 \u0639\u0645\u0644\u06a9\u0631\u062f \u0622\u0646\u200c\u0647\u0627 \u0648 \u062a\u0647\u062f\u06cc\u062f\u0647\u0627\u06cc \u0646\u0627\u0634\u06cc \u0627\u0632 \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f\u0647\u0627\u06cc \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u0645\u06cc\u200c\u06a9\u0646\u06cc\u0645.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/\" \/>\n<meta property=\"og:site_name\" content=\"\u0628\u0644\u0627\u06af \u0622\u0628\u0627\u0644\u0648\u0646\" \/>\n<meta property=\"article:published_time\" content=\"2025-05-05T12:30:21+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-05-10T14:42:52+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-01.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"780\" \/>\n\t<meta property=\"og:image:height\" content=\"470\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"\u0647\u0648\u0634\u0646\u06af \u062d\u0634\u0645\u062a\u06cc\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u0646\u0648\u0634\u062a\u0647\u200c\u0634\u062f\u0647 \u0628\u062f\u0633\u062a\" \/>\n\t<meta name=\"twitter:data1\" content=\"\u0647\u0648\u0634\u0646\u06af \u062d\u0634\u0645\u062a\u06cc\" \/>\n\t<meta name=\"twitter:label2\" content=\"\u0632\u0645\u0627\u0646 \u062a\u0642\u0631\u06cc\u0628\u06cc \u0628\u0631\u0627\u06cc \u062e\u0648\u0627\u0646\u062f\u0646\" \/>\n\t<meta name=\"twitter:data2\" content=\"11 \u062f\u0642\u06cc\u0642\u0647\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/\",\"url\":\"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/\",\"name\":\"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061b \u0628\u0631\u0631\u0633\u06cc \u062c\u0627\u0645\u0639 \u0645\u0641\u0647\u0648\u0645 Cross-Site Scripting\",\"isPartOf\":{\"@id\":\"https:\/\/abalon.cloud\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-01.jpg\",\"datePublished\":\"2025-05-05T12:30:21+00:00\",\"dateModified\":\"2025-05-10T14:42:52+00:00\",\"author\":{\"@id\":\"https:\/\/abalon.cloud\/blog\/#\/schema\/person\/fd8bdb64a6d25e1890c4f1a10905fe25\"},\"description\":\"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f \u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647\u060c \u0627\u0646\u0648\u0627\u0639 \u062d\u0645\u0644\u0627\u062a XSS\u060c \u0646\u062d\u0648\u0647 \u0639\u0645\u0644\u06a9\u0631\u062f \u0622\u0646\u200c\u0647\u0627 \u0648 \u062a\u0647\u062f\u06cc\u062f\u0647\u0627\u06cc \u0646\u0627\u0634\u06cc \u0627\u0632 \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f\u0647\u0627\u06cc \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u0645\u06cc\u200c\u06a9\u0646\u06cc\u0645.\",\"breadcrumb\":{\"@id\":\"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/#breadcrumb\"},\"inLanguage\":\"fa-IR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"fa-IR\",\"@id\":\"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/#primaryimage\",\"url\":\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-01.jpg\",\"contentUrl\":\"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-01.jpg\",\"width\":780,\"height\":470},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/abalon.cloud\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/abalon.cloud\/blog\/#website\",\"url\":\"https:\/\/abalon.cloud\/blog\/\",\"name\":\"\u0628\u0644\u0627\u06af \u0622\u0628\u0627\u0644\u0648\u0646\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/abalon.cloud\/blog\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"fa-IR\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/abalon.cloud\/blog\/#\/schema\/person\/fd8bdb64a6d25e1890c4f1a10905fe25\",\"name\":\"\u0647\u0648\u0634\u0646\u06af \u062d\u0634\u0645\u062a\u06cc\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fa-IR\",\"@id\":\"https:\/\/abalon.cloud\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/012204413ef7bf8e8d274cebb1b9bbccd9928823f14d506a67ff8bef3e53e841?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/012204413ef7bf8e8d274cebb1b9bbccd9928823f14d506a67ff8bef3e53e841?s=96&d=mm&r=g\",\"caption\":\"\u0647\u0648\u0634\u0646\u06af \u062d\u0634\u0645\u062a\u06cc\"},\"url\":\"https:\/\/abalon.cloud\/blog\/author\/h-heshmati\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061b \u0628\u0631\u0631\u0633\u06cc \u062c\u0627\u0645\u0639 \u0645\u0641\u0647\u0648\u0645 Cross-Site Scripting","description":"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f \u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647\u060c \u0627\u0646\u0648\u0627\u0639 \u062d\u0645\u0644\u0627\u062a XSS\u060c \u0646\u062d\u0648\u0647 \u0639\u0645\u0644\u06a9\u0631\u062f \u0622\u0646\u200c\u0647\u0627 \u0648 \u062a\u0647\u062f\u06cc\u062f\u0647\u0627\u06cc \u0646\u0627\u0634\u06cc \u0627\u0632 \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f\u0647\u0627\u06cc \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u0645\u06cc\u200c\u06a9\u0646\u06cc\u0645.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/","og_locale":"fa_IR","og_type":"article","og_title":"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f","og_description":"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f \u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647\u060c \u0627\u0646\u0648\u0627\u0639 \u062d\u0645\u0644\u0627\u062a XSS\u060c \u0646\u062d\u0648\u0647 \u0639\u0645\u0644\u06a9\u0631\u062f \u0622\u0646\u200c\u0647\u0627 \u0648 \u062a\u0647\u062f\u06cc\u062f\u0647\u0627\u06cc \u0646\u0627\u0634\u06cc \u0627\u0632 \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f\u0647\u0627\u06cc \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u0645\u06cc\u200c\u06a9\u0646\u06cc\u0645.","og_url":"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/","og_site_name":"\u0628\u0644\u0627\u06af \u0622\u0628\u0627\u0644\u0648\u0646","article_published_time":"2025-05-05T12:30:21+00:00","article_modified_time":"2025-05-10T14:42:52+00:00","og_image":[{"width":780,"height":470,"url":"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-01.jpg","type":"image\/jpeg"}],"author":"\u0647\u0648\u0634\u0646\u06af \u062d\u0634\u0645\u062a\u06cc","twitter_card":"summary_large_image","twitter_misc":{"\u0646\u0648\u0634\u062a\u0647\u200c\u0634\u062f\u0647 \u0628\u062f\u0633\u062a":"\u0647\u0648\u0634\u0646\u06af \u062d\u0634\u0645\u062a\u06cc","\u0632\u0645\u0627\u0646 \u062a\u0642\u0631\u06cc\u0628\u06cc \u0628\u0631\u0627\u06cc \u062e\u0648\u0627\u0646\u062f\u0646":"11 \u062f\u0642\u06cc\u0642\u0647"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/","url":"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/","name":"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061b \u0628\u0631\u0631\u0633\u06cc \u062c\u0627\u0645\u0639 \u0645\u0641\u0647\u0648\u0645 Cross-Site Scripting","isPartOf":{"@id":"https:\/\/abalon.cloud\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/#primaryimage"},"image":{"@id":"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/#primaryimage"},"thumbnailUrl":"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-01.jpg","datePublished":"2025-05-05T12:30:21+00:00","dateModified":"2025-05-10T14:42:52+00:00","author":{"@id":"https:\/\/abalon.cloud\/blog\/#\/schema\/person\/fd8bdb64a6d25e1890c4f1a10905fe25"},"description":"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f \u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647\u060c \u0627\u0646\u0648\u0627\u0639 \u062d\u0645\u0644\u0627\u062a XSS\u060c \u0646\u062d\u0648\u0647 \u0639\u0645\u0644\u06a9\u0631\u062f \u0622\u0646\u200c\u0647\u0627 \u0648 \u062a\u0647\u062f\u06cc\u062f\u0647\u0627\u06cc \u0646\u0627\u0634\u06cc \u0627\u0632 \u0627\u062c\u0631\u0627\u06cc \u06a9\u062f\u0647\u0627\u06cc \u0645\u062e\u0631\u0628 \u062f\u0631 \u0645\u0631\u0648\u0631\u06af\u0631 \u06a9\u0627\u0631\u0628\u0631\u0627\u0646 \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u0645\u06cc\u200c\u06a9\u0646\u06cc\u0645.","breadcrumb":{"@id":"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/#breadcrumb"},"inLanguage":"fa-IR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/"]}]},{"@type":"ImageObject","inLanguage":"fa-IR","@id":"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/#primaryimage","url":"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-01.jpg","contentUrl":"https:\/\/abalon.cloud\/blog\/wp-content\/uploads\/2025\/04\/Abalon-what-is-xss-attacks-01.jpg","width":780,"height":470},{"@type":"BreadcrumbList","@id":"https:\/\/abalon.cloud\/blog\/what-is-xss-attack\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/abalon.cloud\/blog\/"},{"@type":"ListItem","position":2,"name":"\u062d\u0645\u0644\u0647 XSS \u0686\u06cc\u0633\u062a\u061f"}]},{"@type":"WebSite","@id":"https:\/\/abalon.cloud\/blog\/#website","url":"https:\/\/abalon.cloud\/blog\/","name":"\u0628\u0644\u0627\u06af \u0622\u0628\u0627\u0644\u0648\u0646","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/abalon.cloud\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"fa-IR"},{"@type":"Person","@id":"https:\/\/abalon.cloud\/blog\/#\/schema\/person\/fd8bdb64a6d25e1890c4f1a10905fe25","name":"\u0647\u0648\u0634\u0646\u06af \u062d\u0634\u0645\u062a\u06cc","image":{"@type":"ImageObject","inLanguage":"fa-IR","@id":"https:\/\/abalon.cloud\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/012204413ef7bf8e8d274cebb1b9bbccd9928823f14d506a67ff8bef3e53e841?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/012204413ef7bf8e8d274cebb1b9bbccd9928823f14d506a67ff8bef3e53e841?s=96&d=mm&r=g","caption":"\u0647\u0648\u0634\u0646\u06af \u062d\u0634\u0645\u062a\u06cc"},"url":"https:\/\/abalon.cloud\/blog\/author\/h-heshmati\/"}]}},"_links":{"self":[{"href":"https:\/\/abalon.cloud\/blog\/wp-json\/wp\/v2\/posts\/15094","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/abalon.cloud\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/abalon.cloud\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/abalon.cloud\/blog\/wp-json\/wp\/v2\/users\/32"}],"replies":[{"embeddable":true,"href":"https:\/\/abalon.cloud\/blog\/wp-json\/wp\/v2\/comments?post=15094"}],"version-history":[{"count":16,"href":"https:\/\/abalon.cloud\/blog\/wp-json\/wp\/v2\/posts\/15094\/revisions"}],"predecessor-version":[{"id":15275,"href":"https:\/\/abalon.cloud\/blog\/wp-json\/wp\/v2\/posts\/15094\/revisions\/15275"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/abalon.cloud\/blog\/wp-json\/wp\/v2\/media\/15270"}],"wp:attachment":[{"href":"https:\/\/abalon.cloud\/blog\/wp-json\/wp\/v2\/media?parent=15094"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/abalon.cloud\/blog\/wp-json\/wp\/v2\/categories?post=15094"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/abalon.cloud\/blog\/wp-json\/wp\/v2\/tags?post=15094"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}