Side by Side Diff
Use n/p to move between diff chunks; N/P to move between comments.
Draft comments are only viewable by you.
Keyboard Shortcuts
File
u
:
up to issue
j
/
k
:
jump to file after / before current file
J
/
K
:
jump to next file with a comment after / before current file
Side-by-side diff
i
:
toggle intra-line diffs
e
:
expand all comments
c
:
collapse all comments
s
:
toggle showing all comments
n
/
p
:
next / previous diff chunk or comment
N
/
P
:
next / previous comment
<Up>
/
<Down>
:
next / previous line
Issue
u
:
up to list of issues
j
/
k
:
jump to patch after / before current patch
o
/
<Enter>
:
open current patch in side-by-side view
i
:
open current patch in unified diff view
Issue List
j
/
k
:
jump to issue after / before current issue
o
/
<Enter>
:
open current issue
Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr)
|
Please choose your nickname with
Settings
|
Help
|
Chromium Project
|
Gerrit Changes
|
Sign out
(1135)
Issues
Search
My Issues
|
Starred
Open
|
Closed
|
All
Side by Side Diff: LayoutTests/http/tests/security/xssAuditor/frameset-injection.html
Issue
23441066
:
XSSAuditor bypass with frameset tags. (Closed)
Base URL: svn://svn.chromium.org/blink/trunk
Patch Set: Rename function.
Created 7 years, 3 months ago
Use n/p to move between diff chunks; N/P to move between comments.
Draft comments are only viewable by you.
Context:
3 lines
10 lines
25 lines
50 lines
75 lines
100 lines
Whole file
Column Width:
Tab Spaces:
Jump to:
LayoutTests/http/tests/security/xssAuditor/frameset-injection.html
LayoutTests/http/tests/security/xssAuditor/frameset-injection-expected.txt
LayoutTests/http/tests/security/xssAuditor/resources/echo-intertag.pl
Source/core/html/parser/XSSAuditor.h
Source/core/html/parser/XSSAuditor.cpp
View unified diff
|
Download patch
|
Annotate
|
Revision Log
« no previous file with comments
|
« no previous file
|
LayoutTests/http/tests/security/xssAuditor/frameset-injection-expected.txt »
('j') |
no next file with comments »
Toggle Intra-line Diffs
('i') |
Expand Comments
('e') |
Collapse Comments
('c') |
Show Comments
Hide Comments
('s')
OLD
NEW
1 <!DOCTYPE html>
1 <!DOCTYPE html>
2 <html>
2 <html>
3 <head>
3 <head>
4 <script>
4 <script>
5 if (window.testRunner) {
5 if (window.testRunner) {
6 testRunner.dumpAsText();
6 testRunner.dumpAsText();
7 testRunner.setXSSAuditorEnabled(true);
7 testRunner.setXSSAuditorEnabled(true);
8 }
8 }
9 </script>
9 </script>
10 </head>
10 </head>
11 <body>
11 <body>
12
<iframe src="http://localhost:8000/security/xssAuditor/resources/echo-head-base-
href.pl?q=<base href='//127.0.0.1:8000/security/xssAuditor/resources/base-href/'
>">
12
<iframe src="http://localhost:8000/security/xssAuditor/resources/echo-intertag.p
l?inHead=1&q=<frameset><frame src='data:text/html,<script>alert(0)</script>'></f
rameset>">
13 </iframe>
13 </iframe>
14 </body>
14 </body>
15 </html>
15 </html>
OLD
NEW
« no previous file with comments
|
« no previous file
|
LayoutTests/http/tests/security/xssAuditor/frameset-injection-expected.txt »
('j') |
no next file with comments »
Issue 23441066: XSSAuditor bypass with frameset tags. (Closed)
Created 7 years, 3 months ago by Tom Sepez
Modified 7 years, 3 months ago
Reviewers: abarth-chromium
Base URL: svn://svn.chromium.org/blink/trunk
Comments: 2
This is Rietveld
408576698