[Webkit-unassigned] [Bug 34296] Provide a way for WebKit clients to specify a more granular policy for cross-origin frame access

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Fri Feb 19 20:21:28 PST 2010


https://bugs.webkit.org/show_bug.cgi?id=34296





--- Comment #6 from Adam Barth <abarth at webkit.org>  2010-02-19 20:21:27 PST ---
I really think we should keep canAccess symmetric.  The web platform isn't
designed for asymmetric access.  It might appear to work, but, in reality, the
"lesser" origin can almost always compromise the "greater" origin.

-- 
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the webkit-unassigned mailing list