Open Bug 1399507 Opened 7 years ago Updated 2 years ago

The source of an <img> html element should only load valid image formats.

Categories

(Core :: Layout: Images, Video, and HTML Frames, defect, P3)

55 Branch
defect

Tracking

()

UNCONFIRMED
Tracking Status
firefox57 --- wontfix
firefox58 --- wontfix
firefox59 --- ?

People

(Reporter: jm.acuna73, Unassigned)

Details

User Agent: Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/61.0.3163.79 Safari/537.36 Steps to reproduce: Go to: data:text/html,<img src="https://feeds.feedburner.com/GoogleInbox"/> Actual results: The image executes the windows authentication dialog
Component: Untriaged → Layout: Images
Product: Firefox → Core
Priority: -- → P3
Product: Core → Core Graveyard
Product: Core Graveyard → Core
Severity: normal → S3
You need to log in before you can comment on or make changes to this bug.