[dolphin] [Bug 480190] Dolphin QML HTML injection

Benjamin Flesch bugzilla_noreply at kde.org
Wed Feb 7 13:30:12 GMT 2024


https://bugs.kde.org/show_bug.cgi?id=480190

--- Comment #4 from Benjamin Flesch <benjaminflesch at icloud.com> ---
@sitter: It is a problem because if you close dolphin with alt+f4 the QML
injection stays and visually pollutes your dolphin experience.

Not to speak from the nice crashes you can get with `dolphin --new-window
$(perl -E "print('A' x 100000)")`

IMO handling of untrusted user input should be improved before you end up with
a proper security situation.

-- 
You are receiving this mail because:
You are on the CC list for the bug.


More information about the kfm-devel mailing list