[Webkit-unassigned] [Bug 27239] Do not do HTTP Refresh to javascript: or other dangerous URI schemes

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Wed Oct 21 21:26:25 PDT 2009


https://bugs.webkit.org/show_bug.cgi?id=27239


Chris Evans <scarybeasts at gmail.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
  Attachment #32686|0                           |1
        is obsolete|                            |
  Attachment #41636|                            |review?
               Flag|                            |




--- Comment #10 from Chris Evans <scarybeasts at gmail.com>  2009-10-21 21:26:25 PDT ---
Created an attachment (id=41636)
 --> (https://bugs.webkit.org/attachment.cgi?id=41636)
A much better fix.

A substantially better fix. i.e. it actually covers Refresh to an http URL.

-- 
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the webkit-unassigned mailing list