Bug 29820
Summary: | Lax CSS parsing leads to limited cross-domain theft for a subset of sites | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|
Product: | Security | Reporter: | Chris Evans <scarybeasts> | ||||||||
Component: | Security | Assignee: | WebKit Security Group <webkit-security-unassigned> | ||||||||
Status: | RESOLVED FIXED | ||||||||||
Severity: | Normal | CC: | abarth, ap, cevans, ddkilzer, hyatt, metadenz, mihnea, mitz, mjs, sam, vdanen, yong.li.webkit | ||||||||
Priority: | P2 | Keywords: | InRadar | ||||||||
Version: | Other | ||||||||||
Hardware: | PC | ||||||||||
OS: | All | ||||||||||
Bug Depends on: | |||||||||||
Bug Blocks: | 35032 | ||||||||||
Attachments: |
|
2009-11-04 20:39 PST, Chris Evans
2009-11-11 14:39 PST, Chris Evans
2009-12-14 18:02 PST, Chris Evans