"#cross-site scripting" #cookie #dev #security