The response header has not enabled X-FRAME-OPTIONS, Which helps prevents against Clickjacking attack.. Some browsers would interpret these results incorrectly, allowing clickjacking attacks.
2022-12-08T16:15:13.237
2025-04-23T16:15:24.317
Modified
CVSSv3.1: 4.8 (MEDIUM)