| Details | |
|---|---|
| Alert ID | 90004-3 |
| Alert Type | Passive |
| Status | beta |
| Risk | Low |
| CWE | 693 |
| WASC | 14 |
| Technologies Targeted | All |
| Tags |
CWE-693 OWASP_2017_A03 OWASP_2021_A04 POLICY_PENTEST POLICY_QA_STD SYSTEMIC |
| More Info |
Scan Rule Help |
Summary
Cross-Origin-Opener-Policy header is a response header that allows a site to control if others included documents share the same browsing context. Sharing the same browsing context with untrusted documents might lead to data leak.