OLD | NEW |
1 Test that setRequestHeader properly checks for line feeds in header values. | 1 Test that setRequestHeader properly checks for line feeds in header values. |
2 | 2 |
3 %0AEvil%3A%20on -> SUCCESS, setRequestHeader() raised an exception SyntaxError:
An invalid or illegal string was specified. | 3 %0AEvil%3A%20on -> SUCCESS, setRequestHeader() raised an exception SyntaxError:
Failed to execute 'setRequestHeader' on 'XMLHttpRequest': ' Evil: on' is not a v
alid HTTP header field value. |
4 | 4 |
5 %0DEvil%3A%20on -> SUCCESS, setRequestHeader() raised an exception SyntaxError:
An invalid or illegal string was specified. | 5 %0DEvil%3A%20on -> SUCCESS, setRequestHeader() raised an exception SyntaxError:
Failed to execute 'setRequestHeader' on 'XMLHttpRequest': ' Evil: on' is not a v
alid HTTP header field value. |
6 | 6 |
7 %0D%0AEvil%3A%20on -> SUCCESS, setRequestHeader() raised an exception SyntaxErro
r: An invalid or illegal string was specified. | 7 %0D%0AEvil%3A%20on -> SUCCESS, setRequestHeader() raised an exception SyntaxErro
r: Failed to execute 'setRequestHeader' on 'XMLHttpRequest': ' Evil: on' is not
a valid HTTP header field value. |
8 | 8 |
9 %0A%0DEvil%3A%20on -> SUCCESS, setRequestHeader() raised an exception SyntaxErro
r: An invalid or illegal string was specified. | 9 %0A%0DEvil%3A%20on -> SUCCESS, setRequestHeader() raised an exception SyntaxErro
r: Failed to execute 'setRequestHeader' on 'XMLHttpRequest': ' Evil: on' is not
a valid HTTP header field value. |
OLD | NEW |