Login autofill becomes hard to distinguish between subdomains
Categories
(Toolkit :: Password Manager, defect)
Tracking
()
Tracking | Status | |
---|---|---|
firefox-esr115 | --- | unaffected |
firefox126 | --- | unaffected |
firefox127 | --- | unaffected |
firefox128 | + | fixed |
People
(Reporter: lilydjwg, Assigned: enndeakin)
References
(Regression)
Details
(Keywords: regression, sec-moderate, ux-error-prevention)
Attachments
(2 files)
84.67 KB,
image/png
|
Details | |
Bug 1897351, fix missing domain reference in login autofill menu, r=#credential-management-reviewers
48 bytes,
text/x-phabricator-request
|
Details | Review |
User Agent: Mozilla/5.0 (X11; Linux x86_64; rv:128.0) Gecko/20100101 Firefox/128.0
Steps to reproduce:
- get some accounts with the same username (A) across different subdomains on {bbs,wiki,bugs,aur,accounts}.archlinux.org
- get another, different username (B) account on bbs.archlinux.org
- try to login into bbs.archlinux.org with username A via autofill
Actual results:
A lot of entries are shown without clue which one is which.
Expected results:
A hint about which subdomain the account is associated with should be displayed (like before).
77:30.95 INFO: Last good revision: 804fa6e457c8f4811e07d5a346b5390eb14b34d5
77:30.95 INFO: First bad revision: ac7bca16ad74978e38a235a22455b0653c32553e
77:30.95 INFO: Pushlog:
https://hg.mozilla.org/integration/autoland/pushloghtml?fromchange=804fa6e457c8f4811e07d5a346b5390eb14b34d5&tochange=ac7bca16ad74978e38a235a22455b0653c32553e
Updated•16 days ago
|
Comment 1•16 days ago
|
||
[Tracking Requested - why for this release]: Bad UI that invites ID and password compromise should be corrected.
Comment 2•16 days ago
|
||
:enndeakin, since you are the author of the regressor, bug 1886064, could you take a look? Also, could you set the severity field?
For more information, please visit BugBot documentation.
Assignee | ||
Comment 3•16 days ago
|
||
Updated•16 days ago
|
Pushed by neil@mozilla.com: https://hg.mozilla.org/integration/autoland/rev/4032b7e8db43 fix missing domain reference in login autofill menu, r=credential-management-reviewers,sgalich
Updated•16 days ago
|
Comment 5•16 days ago
|
||
bugherder |
Description
•