[webkit-reviews] review denied: [Bug 27071] [XSSAuditor] HTTP parameters with null/control characters bypass XSSAuditor : [Attachment 32433] Patch with tests

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Wed Jul 8 10:39:52 PDT 2009


Adam Barth <abarth at webkit.org> has denied Daniel Bates <dbates at berkeley.edu>'s
request for review:
Bug 27071: [XSSAuditor] HTTP parameters with null/control characters bypass
XSSAuditor
https://bugs.webkit.org/show_bug.cgi?id=27071

Attachment 32433: Patch with tests
https://bugs.webkit.org/attachment.cgi?id=32433&action=review

------- Additional Comments from Adam Barth <abarth at webkit.org>
What is execGetURL.swf ?  I don't think we can put flash movies in layout
tests.	This probably isn't needed because the auditor blocks the load anyway. 
Also, where is script-tag-post-control-char.html ?


More information about the webkit-reviews mailing list