Closed Bug 884197 Opened 11 years ago Closed 10 years ago

Mixed content Facebook iframe on iTunes store pages

Categories

(Web Compatibility :: Site Reports, defect)

x86
macOS
defect
Not set
minor

Tracking

(Not tracked)

RESOLVED FIXED

People

(Reporter: jruderman, Unassigned)

References

()

Details

(Whiteboard: [mcb-chrome30+][mcb-ie][mcb-thirdparty-notified])

At the bottom of https://itunes.apple.com/us/app/wheres-my-water/id449735650?mt=8

"Become a fan of the iTunes and App Store pages on Facebook for exclusive offers, the inside scoop on new apps and more."

is missing its Facebook buttons because they are blocked as mixed active content.
I sent a note to product-security@apple.com.
This is a mixed content iframe.  Should also be blocked on IE and Chrome29+ (although I haven't tested with IE to verify).


  <div id="facebook">
	<div class="fbfan">
		<iframe src="http://www.facebook.com/plugins/likebox.php?id=100484820802&amp;width=230&amp;connections=0&amp;stream=false&amp;header=false&amp;height=62" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:230px; height:63px;" allowTransparency="true"></iframe>
	</div>
	<div class="fbfan last">
		<iframe src="http://www.facebook.com/plugins/likebox.php?id=286893159420&amp;width=250&amp;connections=0&amp;stream=false&amp;header=false&amp;height=62" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:250px; height:63px;" allowTransparency="true"></iframe>
	</div>
	<p>Become a fan of the iTunes and App Store pages on Facebook for exclusive offers, the inside scoop on new apps and more.</p>
</div>
Whiteboard: [mcb-chrome-29+][mcb-ie?][mcb-thirdparty-notified]
Whiteboard: [mcb-chrome-29+][mcb-ie?][mcb-thirdparty-notified] → [mcb-chrome-30+][mcb-ie?][mcb-thirdparty-notified]
Whiteboard: [mcb-chrome-30+][mcb-ie?][mcb-thirdparty-notified] → [mcb-chrome30+][mcb-ie?][mcb-thirdparty-notified]
Whiteboard: [mcb-chrome30+][mcb-ie?][mcb-thirdparty-notified] → [mcb-chrome30+][mcb-ie][mcb-thirdparty-notified]
Everything related to Facebook seems to have been fixed.
Assignee: english-us → nobody
Status: NEW → RESOLVED
Closed: 10 years ago
Component: English US → Desktop
Resolution: --- → FIXED
Product: Tech Evangelism → Web Compatibility
You need to log in before you can comment on or make changes to this bug.