Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(416)

Unified Diff: chrome/browser/chrome_content_browser_client.h

Issue 1270663002: Validate the Origin HTTP header in the browser process. (Closed) Base URL: https://chromium.googlesource.com/chromium/src.git@master
Patch Set: Update comment Created 5 years, 4 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View side-by-side diff with in-line comments
Download patch
Index: chrome/browser/chrome_content_browser_client.h
diff --git a/chrome/browser/chrome_content_browser_client.h b/chrome/browser/chrome_content_browser_client.h
index fa0e2f2dba5eff105793714ab41c0db243498bf5..1d3dd33fb9e437b956a17415da81262849c9a6dc 100644
--- a/chrome/browser/chrome_content_browser_client.h
+++ b/chrome/browser/chrome_content_browser_client.h
@@ -92,6 +92,9 @@ class ChromeContentBrowserClient : public content::ContentBrowserClient {
bool IsHandledURL(const GURL& url) override;
bool CanCommitURL(content::RenderProcessHost* process_host,
const GURL& url) override;
+ bool IsIllegalOrigin(content::ResourceContext* resource_context,
+ int child_process_id,
+ const GURL& origin) override;
bool ShouldAllowOpenURL(content::SiteInstance* site_instance,
const GURL& url) override;
bool IsSuitableHost(content::RenderProcessHost* process_host,

Powered by Google App Engine
This is Rietveld 408576698