Side by Side Diff: third_party/WebKit/LayoutTests/http/tests/security/xssAuditor/script-tag-with-source-data-url5-expected.txt
Issue 1906603003:
XSSAuditor doesn't handle full set of html5 entities for punctuation. (Closed)
Base URL: https://chromium.googlesource.com/chromium/src.git@master
Patch Set: Stray blank line.
Created 4 years, 7 months ago
Use n/p to move between diff chunks;
N/P to move between comments.
Draft comments are only viewable by you.
1 CONSOLE ERROR: line 3: The XSS Auditor refused to execute a script in 'http://lo
calhost:8000/security/xssAuditor/resources/echo-property.pl?q=%22%3E%3Cscript%20
src%3ddata:%26comma%3balert(1)%3b%22' because its source code was found within t
he request. The auditor was enabled as the server sent neither an 'X-XSS-Protect
ion' nor 'Content-Security-Policy' header.
Issue 1906603003: XSSAuditor doesn't handle full set of html5 entities for punctuation.
(Closed)
Created 4 years, 8 months ago by Tom Sepez
Modified 4 years, 7 months ago
Reviewers: Mike West
Base URL: https://chromium.googlesource.com/chromium/src.git@master
Comments: 3