Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(229)

Side by Side Diff: LayoutTests/http/tests/security/javascriptURL/xss-DENIED-to-javascript-url-in-foreign-domain-subframe-expected.txt

Issue 19932002: Throw exceptions on all failed cross-origin access checks. (Closed) Base URL: svn://svn.chromium.org/blink/trunk
Patch Set: test. Created 7 years, 5 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View unified diff | Download patch | Annotate | Revision Log
OLDNEW
1 CONSOLE MESSAGE: Blocked a frame with origin "http://127.0.0.1:8000" from access ing a frame with origin "http://localhost:8000". Protocols, domains, and ports m ust match.
2 The scenario for this test is that you have an iframe with content from a foreig n domain. In that foreign content is an iframe which loads a javascript: URL. Th is tests that this main document does not have access to that javascript: URL lo aded iframe. 1 The scenario for this test is that you have an iframe with content from a foreig n domain. In that foreign content is an iframe which loads a javascript: URL. Th is tests that this main document does not have access to that javascript: URL lo aded iframe.
3 2
4 3
5 PASS: Cross frame access to a javascript: URL embed in a frame on a foreign doma in denied! 4 PASS: Cross frame access to a javascript: URL embed in a frame on a foreign doma in denied!
6 5
7 6
8 -------- 7 --------
9 Frame: '<!--framePath //<!--frame0-->-->' 8 Frame: '<!--framePath //<!--frame0-->-->'
10 -------- 9 --------
11 Inner iframe on a foreign domain. 10 Inner iframe on a foreign domain.
12 11
13 12
14 13
15 -------- 14 --------
16 Frame: 'aFrame' 15 Frame: 'aFrame'
17 -------- 16 --------
18 PASS: Cross frame access from a frame on a foreign domain denied! 17 PASS: Cross frame access from a frame on a foreign domain denied!
19 18
20 Inner-inner iframe. This iframe (which is javascript: URL and whose parent is on a foreign domain) is the frame that the main frame is trying to access. It shou ld not have access to it. 19 Inner-inner iframe. This iframe (which is javascript: URL and whose parent is on a foreign domain) is the frame that the main frame is trying to access. It shou ld not have access to it.
OLDNEW

Powered by Google App Engine
This is Rietveld 408576698