xgqfrms™, xgqfrms® : xgqfrms's offical website of cnblogs! xgqfrms™, xgqfrms® : xgqfrms's offical website of GitHub!

HTML link rel noopener & noreferrer All In One

HTML link rel noopener & noreferrer All In One

Web 安全

image

<a target="_blank" rel="noopener noreferrer">
  Web Security A link ✅
</a>



<a>
  Not Security A link ❌
</a>

noopener & noreferrer

<a target="_blank"> === <a rel="noopener">

image

https://developer.mozilla.org/en-US/docs/Web/HTML/Attributes/rel/noopener

https://developer.mozilla.org/en-US/docs/Web/HTML/Attributes/rel/noreferrer

window.opener;
// null

image

https://developer.mozilla.org/en-US/docs/Web/API/Window/opener

https://mathiasbynens.github.io/rel-noopener/

MDN & GitHub

https://github.com/mdn/content/blob/main/files/en-us/web/html/attributes/rel/noreferrer/index.md?plain=1

https://github.com/mdn/content/blob/main/files/zh-cn/web/html/attributes/rel/noreferrer/index.md?plain=1

https://github.com/mdn/content/blob/main/files/zh-hans/web/html/attributes/rel/noreferrer/index.md?plain=1

Referer HTTP request header

https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Referer

Referrer-Policy

image

image

https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Referrer-Policy

refs

https://youtu.be/ydkQlJhodio?t=50

https://stackoverflow.com/questions/50709625/link-with-target-blank-and-rel-noopener-noreferrer-still-vulnerable



©xgqfrms 2012-2020

www.cnblogs.com/xgqfrms 发布文章使用:只允许注册用户才可以访问!

原创文章,版权所有©️xgqfrms, 禁止转载 🈲️,侵权必究⚠️!


posted @   xgqfrms  阅读(37)  评论(0编辑  收藏  举报
相关博文:
阅读排行:
· DeepSeek 开源周回顾「GitHub 热点速览」
· 记一次.NET内存居高不下排查解决与启示
· 物流快递公司核心技术能力-地址解析分单基础技术分享
· .NET 10首个预览版发布:重大改进与新特性概览!
· .NET10 - 预览版1新功能体验(一)
历史上的今天:
2022-01-26 CSS background All In One
2022-01-26 autoprefixer: ignore next not work bug All In One
2022-01-26 飞书水印 bug All In One
2022-01-26 前端水印实现方式 All In One
2022-01-26 无限死亡循环的电影 All In One
2021-01-26 邮件撤回功能实现原来剖析
2021-01-26 js arrow function return object
点击右上角即可分享
微信分享提示