| Index: trunk/LayoutTests/http/tests/security/contentSecurityPolicy/1.1/reflected-xss-block.html
|
| ===================================================================
|
| --- trunk/LayoutTests/http/tests/security/contentSecurityPolicy/1.1/reflected-xss-block.html (revision 168578)
|
| +++ trunk/LayoutTests/http/tests/security/contentSecurityPolicy/1.1/reflected-xss-block.html (working copy)
|
| @@ -15,7 +15,7 @@
|
| <p>Tests that 'Content-Security-Policy: reflected-xss block;' enables the XSSAuditor.
|
| This test passes if a console message is generated, and the page is blocked.
|
| There should be no content in the IFrame below:</p>
|
| - <iframe id="frame" name="frame"
|
| + <iframe id="frame"
|
| onload="checkIfFrameLocationMatchesSrcAndCallDone('frame')"
|
| src="http://localhost:8000/security/xssAuditor/resources/echo-intertag.pl?csp=block&q=<script>alert(String.fromCharCode(0x58,0x53,0x53))</script>"></iframe>
|
| </body>
|
|
|