Bug 83238 - XSSAuditor doesn't catch injected srcdoc attributes
Summary: XSSAuditor doesn't catch injected srcdoc attributes
Status: RESOLVED FIXED
Alias: None
Product: WebKit
Classification: Unclassified
Component: New Bugs (show other bugs)
Version: 528+ (Nightly build)
Hardware: Unspecified Unspecified
: P2 Normal
Assignee: Adam Barth
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2012-04-04 18:08 PDT by Adam Barth
Modified: 2012-04-04 21:18 PDT (History)
4 users (show)

See Also:


Attachments
Patch (9.03 KB, patch)
2012-04-04 18:10 PDT, Adam Barth
no flags Details | Formatted Diff | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Adam Barth 2012-04-04 18:08:02 PDT
XSSAuditor doesn't catch injected srcdoc attributes
Comment 1 Adam Barth 2012-04-04 18:10:28 PDT
Created attachment 135734 [details]
Patch
Comment 2 Daniel Bates 2012-04-04 20:42:25 PDT
Comment on attachment 135734 [details]
Patch

Looks good to me.
Comment 3 WebKit Review Bot 2012-04-04 21:18:44 PDT
Comment on attachment 135734 [details]
Patch

Clearing flags on attachment: 135734

Committed r113286: <http://trac.webkit.org/changeset/113286>
Comment 4 WebKit Review Bot 2012-04-04 21:18:49 PDT
All reviewed patches have been landed.  Closing bug.