[Webkit-unassigned] [Bug 27071] [XSSAuditor] HTTP parameters with null/control characters bypass XSSAuditor

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Wed Jul 8 11:18:28 PDT 2009


https://bugs.webkit.org/show_bug.cgi?id=27071


Daniel Bates <dbates at berkeley.edu> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
  Attachment #32433|0                           |1
        is obsolete|                            |
  Attachment #32462|                            |review?
               Flag|                            |




--- Comment #7 from Daniel Bates <dbates at berkeley.edu>  2009-07-08 11:18:27 PDT ---
Created an attachment (id=32462)
 --> (https://bugs.webkit.org/attachment.cgi?id=32462)
Patch with tests

Removed file execGetURL.swf. Added test case script-tag-post-control-char.html

-- 
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the webkit-unassigned mailing list