A content security policy (CSP) "frame-ancestors" directive containing origins with paths allows for comparisons against those paths…
mozilla·CWE-200·Published 2018-06-11