Web 安全问题验证:如何使用 XSS 窃取 token All In One
XSS 读取 localStorage 存储的 JWT token
// js 遍历 localStorage
for (let i = 0; i < localStorage.length; i++) {
const key = localStorage.key(i);
const value = localStorage.getItem(key);
console.log(`key, value =`, key, value);
}
js 遍历 localStorage
// key 是关键字
标签:Web,XSS,xyz,script,js,token,localStorage,key
From: https://www.cnblogs.com/xgqfrms/p/16987826.html