Summary: | Use allowRequestIfNoIllegalURICharacters instead of context for XSSAuditor::canLoadExternalScriptFromSrc | ||||||
---|---|---|---|---|---|---|---|
Product: | WebKit | Reporter: | Adam Barth <abarth> | ||||
Component: | New Bugs | Assignee: | Adam Barth <abarth> | ||||
Status: | RESOLVED FIXED | ||||||
Severity: | Normal | CC: | dbates, eric, Ms2ger | ||||
Priority: | P2 | ||||||
Version: | 528+ (Nightly build) | ||||||
Hardware: | Other | ||||||
OS: | OS X 10.5 | ||||||
Bug Depends on: | |||||||
Bug Blocks: | 39259 | ||||||
Attachments: |
|
Description
Adam Barth
2010-06-09 23:48:52 PDT
Created attachment 58336 [details]
Patch
Comment on attachment 58336 [details]
Patch
OK. dbates should at least see this go by.
> // FIXME: We have no easy way to provide the XSSAuditor with the original
> // un-processed attribute source, so for now we pass nullAtom.
>- return m_XSSAuditor->canLoadExternalScriptFromSrc(nullAtom, srcValue);
>+ return m_XSSAuditor->canLoadExternalScriptFromSrc(srcValue);
Update the comment?
Good catch. One sec. Committed r60964: <http://trac.webkit.org/changeset/60964> |