Refused to execute a JavaScript script. Source code of script found within request

This “feature” can be disabled by sending the non-standard HTTP header X-XSS-Protection on the affected page.

X-XSS-Protection: 0

Leave a Comment