When I played around with XMLHttpRequest to a locally running Jupyter server I got the following error:
No 'Access-Control-Allow-Origin' header is present on the requested resource.
It seems that should have prevented this exploit as well?
No 'Access-Control-Allow-Origin' header is present on the requested resource.
It seems that should have prevented this exploit as well?