XSS, Cross-Site Scripting

August 23, 2025 2 weeks ago 1 min read

Injection attack that executes untrusted scripts in a user’s browser, a key risk for dapps that render user provided NFT metadata or markdown without sanitization.