Please suggest me the best way to stop Cross-site scripting (XSS) through URL.
For Example see below URL and after affect of this attack.
https://example.com/questions/ask.aspx?hf=15315%27%3balert("XSS")%2f%2f150
and after this an alert has been occur on browser.
