---
title: "XSS: your SPA is highly vulnerable!"
url: https://daily.dev/posts/xss-your-spa-is-highly-vulnerable--prnjuzifx
source_url: https://systemweakness.com/xss-your-spa-is-highly-vulnerable-7d843de0b08a?source=rss----f20a9840e177---4
type: article
source: "System Weakness"
published: 2022-04-14T06:15:12.905Z
updated: 2022-04-14T06:15:12.912Z
tags: ["security", "webdev", "cyber", "architecture"]
reading_time: 2
upvotes: 16
comments: 1
language: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# XSS: your SPA is highly vulnerable!

**[System Weakness](https://daily.dev/sources/systemweakness)** · 2 min read · 16 upvotes · 1 comments

## Summary

Single Page Application (SPA) is vulnerable to Cross-Site Scripting (XSS) Attacks. XSS can be mitigated by issuing a secured cookie to the front-end. We’ll see below how to leverage this protection in a micro services architecture. We explored the concept to leverage the API Gateway for security reason.

## Full article

daily.dev links to this article rather than hosting it. Read it at the original source: <https://systemweakness.com/xss-your-spa-is-highly-vulnerable-7d843de0b08a?source=rss----f20a9840e177---4>

## Community discussion

Top comments from developers on daily.dev.

**@crismarket75** · 0 upvotes

> Nice Post :) I just start study on these concepts and I enjoy this article

## Similar posts on daily.dev

- [Don’t just attend KubeCon \+ CloudNativeCon, Merge Forward your experience\!](https://daily.dev/posts/don-t-just-attend-kubecon-cloudnativecon-merge-forward-your-experience--l0rpp73x8) · CNCF · 0 upvotes · 0 comments
- [Announcing H2 2026 KCDs](https://daily.dev/posts/announcing-h2-2026-kcds-m96goajm1) · CNCF · 1 upvotes · 0 comments
- [Two months of Open Community Groups](https://daily.dev/posts/two-months-of-open-community-groups-asf52zhbs) · CNCF · 0 upvotes · 0 comments
- [CNCF Unveils Schedule for KubeCon \+ CloudNativeCon Europe 2026](https://daily.dev/posts/cncf-unveils-schedule-for-kubecon-cloudnativecon-europe-2026-ikhcoa5cb) · CNCF · 2 upvotes · 0 comments
- [CNCF Debuts KubeCon \+ CloudNativeCon Japan 2026 Schedule](https://daily.dev/posts/cncf-debuts-kubecon-cloudnativecon-japan-2026-schedule-xp5pyudub) · CNCF · 1 upvotes · 0 comments

---

Tags: [#security](https://daily.dev/tags/security), [#webdev](https://daily.dev/tags/webdev), [#cyber](https://daily.dev/tags/cyber), [#architecture](https://daily.dev/tags/architecture)

[View this post on daily.dev](https://daily.dev/posts/xss-your-spa-is-highly-vulnerable--prnjuzifx)
