[Webkit-unassigned] [Bug 16073] xss possible because of a bug in Document::setDomain

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Wed Nov 21 16:20:21 PST 2007


------- Comment #8 from ian.eng.webkit at gmail.com  2007-11-21 16:20 PDT -------
More test results:

Firefox does not allow http to access https even when both domain are the same
and set to themselves. Sounds reasonable.

Configure bugmail: http://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.

More information about the webkit-unassigned mailing list