[WebKit-devel] [Bug 217464] Universal XSS

Eelko Berkenpies fedora at berkenpi.es
Fri Jul 23 16:28:26 CEST 2010


https://bugs.kde.org/show_bug.cgi?id=217464





--- Comment #13 from Eelko Berkenpies <fedora berkenpi es>  2010-07-23 16:27:13 ---
Created an attachment (id=49437)
 --> (http://bugs.kde.org/attachment.cgi?id=49437)
Removes path from URL on error page

The attached (simple) patch produces a more firefox-like error page and removes
the path from the URL, preventing any (XSS) code into being included into the
error page.

Please correct me if I'm wrong. :)

-- 
Configure bugmail: https://bugs.kde.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.


More information about the WebKit-devel mailing list