Bug 168856

Summary: HitTestResult's linkSuggestedFilename should sanitize download attribute
Product: WebKit Reporter: Chris Dumez <cdumez>
Component: DOMAssignee: Chris Dumez <cdumez>
Status: RESOLVED FIXED    
Severity: Normal CC: achristensen, ap, cdumez, commit-queue, darin, esprehn+autocc, glenn, kling, koivisto, kondapallykalyan, rniwa, webkit-bug-importer
Priority: P2 Keywords: InRadar
Version: WebKit Nightly Build   
Hardware: Unspecified   
OS: Unspecified   
See Also: https://bugs.webkit.org/show_bug.cgi?id=168839
Attachments:
Description Flags
Patch
none
Patch none

Chris Dumez
Reported 2017-02-24 16:38:04 PST
HitTestResult's suggestedFilename should sanitize download attribute.
Attachments
Patch (14.23 KB, patch)
2017-02-24 18:19 PST, Chris Dumez
no flags
Patch (14.01 KB, patch)
2017-02-24 19:27 PST, Chris Dumez
no flags
Chris Dumez
Comment 1 2017-02-24 16:39:07 PST
Chris Dumez
Comment 2 2017-02-24 16:57:43 PST
This is used by "Download linked file" / "Download linked file as..." in context menu.
Chris Dumez
Comment 3 2017-02-24 18:19:41 PST
Chris Dumez
Comment 4 2017-02-24 19:27:09 PST
Chris Dumez
Comment 5 2017-02-26 10:33:05 PST
Comment on attachment 302728 [details] Patch Clearing flags on attachment: 302728 Committed r213010: <http://trac.webkit.org/changeset/213010>
Chris Dumez
Comment 6 2017-02-26 10:33:11 PST
All reviewed patches have been landed. Closing bug.
Note You need to log in before you can comment on or make changes to this bug.