OLD | NEW |
(Empty) | |
| 1 <!DOCTYPE HTML> |
| 2 <html> |
| 3 <head> |
| 4 <title>Inline script attached by DOM manipulation should not run without an
'unsafe-inline' script-src policy, even with default-src *</title> |
| 5 <script src='/resources/testharness.js'></script> |
| 6 <script src='/resources/testharnessreport.js'></script> |
| 7 </head> |
| 8 <body> |
| 9 <h1>Inline script attached by DOM manipulation should not run without an 'un
safe-inline' script-src policy, even with default-src *</h1> |
| 10 <div id="log"></div> |
| 11 |
| 12 <div id=attachHere></div> |
| 13 |
| 14 <script id=emptyScript></script> |
| 15 |
| 16 <div id=emptyDiv></div> |
| 17 |
| 18 <script src="addInlineTestsWithDOMManipulation.js"></script> |
| 19 |
| 20 <script async defer src="../support/checkReport.sub.js?reportField=violated-
directive&reportValue=script-src%20*"></script> |
| 21 |
| 22 </body> |
| 23 </html> |
OLD | NEW |