[Webkit-unassigned] [Bug 218086] Same domain sandboxed iframe events blocked from parent listener without allow-scripts

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Mon Jul 25 11:00:25 PDT 2022


https://bugs.webkit.org/show_bug.cgi?id=218086

--- Comment #4 from Phil Freo <phil at philfreo.com> ---
This bug also exists in Safari Version 15.5.

This bug has a negative affect on web security because Safari's behavior means it's harder for developers to utilize sandboxed iframes to block scripts from within the iframe, if the external page still needs any scripting control.

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.webkit.org/pipermail/webkit-unassigned/attachments/20220725/aea85f12/attachment-0001.htm>


More information about the webkit-unassigned mailing list