[Webkit-unassigned] [Bug 11885] Cross-frame scripting checks should not restrict access to data: URLs

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Thu Jan 24 21:15:40 PST 2008


------- Comment #3 from mjs at apple.com  2008-01-24 21:15 PDT -------
I believe the current behavior of Firefox is an XSS security risk.

Configure bugmail: http://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.

More information about the webkit-unassigned mailing list