[WebKit-devel] [Bug 217464] Universal XSS and / or crash

Tim Brown kde at machine.org.uk
Sun Dec 6 13:36:44 CET 2009


https://bugs.kde.org/show_bug.cgi?id=217464





--- Comment #4 from Tim Brown <kde machine org uk>  2009-12-06 13:36:42 ---
This line from Rekonq's webview.cpp is also problematic:

msg += "<input type=\"button\" id=\"reloadButton\"
onClick=\"document.location.href='" + reply->url().path() + "';\" value=\"";

-- 
Configure bugmail: https://bugs.kde.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.


More information about the WebKit-devel mailing list