Whether or not to apply the jsonVulnerabilityGuard when rendering json.
Whether or not to apply the jsonVulnerabilityGuard when rendering json.
http://haacked.com/archive/2008/11/20/anatomy-of-a-subtle-json-vulnerability.aspx
If a request is made with a parameter in jsonpCallbackParameterNames it will be assumed that it is a JSONP request and the json will be returned as the argument to a function with the name specified in the corresponding parameter.
If a request is made with a parameter in jsonpCallbackParameterNames it will be assumed that it is a JSONP request and the json will be returned as the argument to a function with the name specified in the corresponding parameter.
By default no parameterNames will be checked
Whether or not to apply the rosetta flash guard when rendering jsonp callbacks.
Whether or not to apply the rosetta flash guard when rendering jsonp callbacks.
http://miki.it/blog/2014/7/8/abusing-jsonp-with-rosetta-flash/