Excess-XSS
Excess-XSS copied to clipboard
Terminology
Could alternate terminology make XSS easier to understand? In particular, Dave Wichers has proposed terminology dividing XSS between persistent/reflected and traditional/DOM-based/pure DOM-based. Incorporating an alternate terminology into the tutorial would involve reworking the examples and diagrams, and also describing the significance of the various classes.