[Webkit-unassigned] [Bug 68094] xssauditor - script block ending in comment can bypass auditor.
bugzilla-daemon at webkit.org
bugzilla-daemon at webkit.org
Tue Sep 20 14:38:14 PDT 2011
https://bugs.webkit.org/show_bug.cgi?id=68094
Adam Barth <abarth at webkit.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Attachment #108054|review? |review-
Flag| |
--- Comment #6 from Adam Barth <abarth at webkit.org> 2011-09-20 14:38:14 PST ---
(From update of attachment 108054)
Woah there. I don't think we should be lexing JavaScript. That's way too complicated. Isn't there something simpler we can do?
--
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.
More information about the webkit-unassigned
mailing list