Bug 16775
| Summary: | Security exploit in postMessage using js to override the URI and domain | ||||||||
|---|---|---|---|---|---|---|---|---|---|
| Product: | WebKit | Reporter: | Adam Barth <abarth> | ||||||
| Component: | DOM | Assignee: | Sam Weinig <sam> | ||||||
| Status: | RESOLVED FIXED | ||||||||
| Severity: | Normal | CC: | ap, collinj, darin, ian, sam | ||||||
| Priority: | P1 | ||||||||
| Version: | 528+ (Nightly build) | ||||||||
| Hardware: | All | ||||||||
| OS: | All | ||||||||
| URL: | http://crypto.stanford.edu/~abarth/research/webkit/base/ | ||||||||
| Attachments: |
|
||||||||
2008-01-08 17:26 PST, Collin Jackson
2008-01-11 20:05 PST, Collin Jackson