Q12
Single choice
A security analyst sees the following OWASP ZAP output from a scan that was performed against a modern version of Windows while testing for client-side vulnerabilities:
Alert Detail
Low (Medium) Web Browser XSS Protection not enabled
Description: Web browser XSS protection not enabled, or disabled by the configuration of the HTTP Response header
URL: https://domain.com/sun/ray
Which of the following is the MOST likely solution to the listed vulnerability?