DescriptionRun HTMLSourceTracker hooks only when XSSAuditor is enabled
HTMLSourceTracker enables XSSAuditor to examine corresponding raw HTML source
to check if it contains XSS attempts. HTMLSourceTracker is currently very slow
involving full copy of pending input SegmentedString.
Before this CL, HTMLSourceTracker was invoked on every HTMLToken regardless
of XSSAuditor is enabled.
This CL avoids running HTMLSourceTracker when XSSAuditor is not enabled.
BUG=520296
Committed: https://src.chromium.org/viewvc/blink?view=rev&revision=201530
Patch Set 1 #
Messages
Total messages: 6 (2 generated)
|