Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(33)

Side by Side Diff: LayoutTests/http/tests/security/javascriptURL/xss-DENIED-from-javascript-url-in-foreign-domain-subframe-expected.txt

Issue 19932002: Throw exceptions on all failed cross-origin access checks. (Closed) Base URL: svn://svn.chromium.org/blink/trunk
Patch Set: test. Created 7 years, 5 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View unified diff | Download patch | Annotate | Revision Log
OLDNEW
1 CONSOLE MESSAGE: Blocked a frame with origin "http://localhost:8000" from access ing a frame with origin "http://127.0.0.1:8000". Protocols, domains, and ports m ust match.
2 The scenario for this test is that you have an iframe with content from a foreig n domain. In that foreign content is an iframe which loads a javascript: URL. Th is tests that the javascript: URL loaded iframe does not have access to the main frame using top.document. 1 The scenario for this test is that you have an iframe with content from a foreig n domain. In that foreign content is an iframe which loads a javascript: URL. Th is tests that the javascript: URL loaded iframe does not have access to the main frame using top.document.
3 2
4 3
5 Pass: Cross frame access from a javascript: URL on a different domain was denied . 4 Pass: Cross frame access from a javascript: URL on a different domain was denied .
6 5
7 -------- 6 --------
8 Frame: '<!--framePath //<!--frame0-->-->' 7 Frame: '<!--framePath //<!--frame0-->-->'
9 -------- 8 --------
10 Inner iframe on a foreign domain. 9 Inner iframe on a foreign domain.
11 10
12 11
13 12
14 -------- 13 --------
15 Frame: 'aFrame' 14 Frame: 'aFrame'
16 -------- 15 --------
17 Inner-inner iframe. This iframe (which is javascript: URL and whose parent is on a foreign domain) is the frame attempting to access the main frame. It should n ot have access to it. 16 Inner-inner iframe. This iframe (which is javascript: URL and whose parent is on a foreign domain) is the frame attempting to access the main frame. It should n ot have access to it.
OLDNEW

Powered by Google App Engine
This is Rietveld 408576698