Securing HTML Interoperability

Silverlight's HTML interoperability features raise some new security considerations. This is particularly true if the Silverlight application and the hosting web page are developed by different parties. In this situation, there's a risk that malicious code in a Silverlight application could tamper with the HTML elsewhere on the page. Or, JavaScript code in the HTML page could call into the Silverlight application with malicious information, potentially tricking it into carrying out the wrong action.

If these issues are a concern, you can use a few options to clamp down on Silverlight's HTML interoperability. To prevent the Silverlight application from overstepping its bounds, you can set one of two parameters in ...

Get Pro Silverlight 5 in VB now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.