https://29022131.atlassian.net/wiki/spaces/Sec/pages/889522628/Javascript+Secure+Coding+Playbook#JavascriptSecureCodingPlaybook-CrossSiteScripting