Chromium Code Reviews| OLD | NEW |
|---|---|
| (Empty) | |
| 1 <script> | |
| 2 if (window.testRunner) { | |
| 3 testRunner.waitUntilDone(); | |
| 4 testRunner.dumpAsText(); | |
| 5 } | |
| 6 | |
| 7 function iframeLoaded() { | |
| 8 var iframe = document.getElementById('iframe'); | |
| 9 try { | |
| 10 var secret = iframe.contentWindow.secret; | |
| 11 alert("FAIL: Secret is '" + secret + "'."); | |
| 12 } catch(e) { | |
| 13 alert('PASS: Prevented from accessing the content of the iframe in a dif ferent suborigin.'); | |
| 14 } | |
| 15 testRunner.notifyDone(); | |
| 16 } | |
| 17 </script> | |
| 18 <p> | |
| 19 This tests whether a frame is prevented from accessing secrets in a frame in a d ifferent suborigin. | |
| 20 </p> | |
| 21 <iframe onload="iframeLoaded();" id="iframe" src="resources/suborigin.php?subori gin=foobar"></iframe> | |
|
Mike West
2014/10/23 12:59:18
As a general note, I'd suggest postMessaging the f
jww
2015/03/20 22:50:02
Done.
| |
| OLD | NEW |