Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(61)

Unified Diff: LayoutTests/http/tests/security/xssAuditor/resources/echo-form-action.pl

Issue 125513003: Test case for when the XSS vector is in the path. (Closed) Base URL: svn://svn.chromium.org/blink/trunk
Patch Set: Rebase test. Created 6 years, 11 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View side-by-side diff with in-line comments
Download patch
Index: LayoutTests/http/tests/security/xssAuditor/resources/echo-form-action.pl
diff --git a/LayoutTests/http/tests/security/xssAuditor/resources/echo-form-action.pl b/LayoutTests/http/tests/security/xssAuditor/resources/echo-form-action.pl
new file mode 100755
index 0000000000000000000000000000000000000000..ce2a8fed23108b7e77b0c5726b8d8357ce49b459
--- /dev/null
+++ b/LayoutTests/http/tests/security/xssAuditor/resources/echo-form-action.pl
@@ -0,0 +1,16 @@
+#!/usr/bin/perl -wT
+use strict;
+use CGI;
+
+my $cgi = new CGI;
+
+print "Content-Type: text/html; charset=UTF-8\n\n";
+
+print "<!DOCTYPE html>\n";
+print "<html>\n";
+print "<body>\n";
+print "<p>This is an iframe with a injected form</p>\n";
+print "<form method=\"post\" id=\"login\" action=\"".$cgi->param('q')."\"></form>\n";
+print "<script>if (window.testRunner) testRunner.notifyDone();</script>\n";
+print "</body>\n";
+print "</html>\n";

Powered by Google App Engine
This is Rietveld 408576698