RESOLVED FIXED 240136
CSP: Fix incorrect blocked-uri for inline scripts and strict-dynamic policies
https://bugs.webkit.org/show_bug.cgi?id=240136
Summary CSP: Fix incorrect blocked-uri for inline scripts and strict-dynamic policies
Patrick Griffis
Reported 2022-05-05 13:16:25 PDT
CSP: Fix incorrect blocked-uri for inline scripts and strict-dynamic policies
Attachments
Patch (4.75 KB, patch)
2022-05-05 13:16 PDT, Patrick Griffis
no flags
Patch (4.79 KB, patch)
2022-05-05 13:17 PDT, Patrick Griffis
no flags
Patch (4.74 KB, patch)
2022-05-05 13:24 PDT, Patrick Griffis
no flags
Patrick Griffis
Comment 1 2022-05-05 13:16:39 PDT Comment hidden (obsolete)
Patrick Griffis
Comment 2 2022-05-05 13:17:18 PDT Comment hidden (obsolete)
Kate Cheney
Comment 3 2022-05-05 13:23:52 PDT
Comment on attachment 458907 [details] Patch View in context: https://bugs.webkit.org/attachment.cgi?id=458907&action=review > LayoutTests/ChangeLog:9 > + * platform/gtk/http/tests/security/contentSecurityPolicy/script-src-strict-dynamic-inline-report-expected.txt: Added. Would you be able to add expectations for other platforms as well?
Patrick Griffis
Comment 4 2022-05-05 13:24:27 PDT
Patrick Griffis
Comment 5 2022-05-05 13:25:16 PDT
(In reply to Kate Cheney from comment #3) > Comment on attachment 458907 [details] > Patch > > View in context: > https://bugs.webkit.org/attachment.cgi?id=458907&action=review > > > LayoutTests/ChangeLog:9 > > + * platform/gtk/http/tests/security/contentSecurityPolicy/script-src-strict-dynamic-inline-report-expected.txt: Added. > > Would you be able to add expectations for other platforms as well? Meant to be for all platforms, fixed.
Kate Cheney
Comment 6 2022-05-05 13:27:50 PDT
Comment on attachment 458909 [details] Patch r=me
EWS
Comment 7 2022-05-06 09:41:39 PDT
Committed r293897 (?): <https://commits.webkit.org/r293897> All reviewed patches have been landed. Closing bug and clearing flags on attachment 458909 [details].
Radar WebKit Bug Importer
Comment 8 2022-05-06 09:42:12 PDT
Note You need to log in before you can comment on or make changes to this bug.