[Webkit-unassigned] [Bug 125837] New: XSSAuditor should catch reflected srcdoc properties even without an <iframe> tag injection

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Mon Dec 16 22:29:12 PST 2013


https://bugs.webkit.org/show_bug.cgi?id=125837

           Summary: XSSAuditor should catch reflected srcdoc properties
                    even without an <iframe> tag injection
           Product: WebKit
           Version: 528+ (Nightly build)
          Platform: Unspecified
        OS/Version: Unspecified
            Status: NEW
          Keywords: BlinkMergeCandidate
          Severity: Normal
          Priority: P2
         Component: Page Loading
        AssignedTo: webkit-unassigned at lists.webkit.org
        ReportedBy: rniwa at webkit.org
                CC: ap at webkit.org, sam at webkit.org, ddkilzer at webkit.org,
                    beidson at apple.com


Consider merging https://chromium.googlesource.com/chromium/blink/+/c54d75957f3e359f3862af8293b864564c66dfc9

-- 
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the webkit-unassigned mailing list