https://blog.bidela.com.br/apache2/htaccess-impedir-script-injection/
HTACCESS - Impedir Script Injection