Closed
Bug 1422325
Opened 8 years ago
Closed 8 years ago
Test that Activity Stream screenshots can no longer be coerced to load unsafe URIs
Categories
(Firefox :: New Tab Page, enhancement)
Tracking
()
RESOLVED
FIXED
Firefox 60
| Tracking | Status | |
|---|---|---|
| firefox-esr52 | --- | unaffected |
| firefox58 | --- | wontfix |
| firefox59 | --- | wontfix |
| firefox60 | --- | fixed |
People
(Reporter: ursula, Assigned: ursula)
References
Details
(Keywords: sec-other, Whiteboard: [adv-main60-][post-critsmash-triage])
Attachments
(1 file)
|
6.78 KB,
patch
|
ursula
:
review+
|
Details | Diff | Splinter Review |
Bug 1420049 landed, I need to land the tests separately. The tests have already been written and reviewed, I will carry over the r+ from Gijs
| Assignee | ||
Comment 1•8 years ago
|
||
Attachment #8933667 -
Flags: review+
| Assignee | ||
Updated•8 years ago
|
Updated•8 years ago
|
status-firefox-esr52:
--- → unaffected
Keywords: sec-other
| Assignee | ||
Comment 2•8 years ago
|
||
What do you think Gijs, should we land this now?
Flags: needinfo?(gijskruitbosch+bugs)
Comment 3•8 years ago
|
||
(In reply to Ursula Sarracini (:ursula) from comment #2)
> What do you think Gijs, should we land this now?
For the original bug's sake, now would be fine. The only thing I'm wondering is whether we should hold off because of bug 1433707. Ed?
Flags: needinfo?(gijskruitbosch+bugs) → needinfo?(edilee)
Comment 4•8 years ago
|
||
I don't see the need to wait for the other bug. They're two very different parts of activity stream.
Flags: needinfo?(edilee)
| Assignee | ||
Comment 5•8 years ago
|
||
Updated•8 years ago
|
Updated•8 years ago
|
Target Milestone: --- → Firefox 60
Updated•8 years ago
|
Group: firefox-core-security → core-security-release
Updated•8 years ago
|
Whiteboard: [adv-main60-]
Updated•8 years ago
|
Flags: qe-verify-
Whiteboard: [adv-main60-] → [adv-main60-][post-critsmash-triage]
Updated•7 years ago
|
Group: core-security-release
Updated•6 years ago
|
Component: Activity Streams: Newtab → New Tab Page
You need to log in
before you can comment on or make changes to this bug.
Description
•