[Webkit-unassigned] [Bug 44445] Reflective XSS Protection and ASP unicode messing

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Mon Aug 23 12:08:13 PDT 2010


https://bugs.webkit.org/show_bug.cgi?id=44445





--- Comment #1 from Adam Barth <abarth at webkit.org>  2010-08-23 12:08:13 PST ---
We could normalize these before comparison, but there's a long tail of complex transformations like this.  It's unclear whether we're better off chasing that tail or letting these folks realize that magically substituting one character for another is a bad idea.

-- 
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the webkit-unassigned mailing list