The following cheat sheet serves as a guide for implementing HTML 5 in a secure fashion. Attack is described in detail in this article. To summarize, it's the capacity to act on parent page's content ...
See relevant section of this Cheat Sheet to ensure CORS security. - While Web Workers don't have access to DOM of the calling page, malicious Web Workers can use excessive CPU for computation, leading ...