Who |
When |
What |
Removed |
Added |
martijn.martijn
|
2007-02-21 15:53:35 PST
|
CC
|
| bzbarsky, martijn.martijn
|
samuel.sidler+old
|
2007-02-21 15:59:27 PST
|
CC
|
| samuel.sidler
|
dveditz
|
2007-02-21 16:14:42 PST
|
Whiteboard
|
| [sg:want]
|
CC
|
| jruderman, dveditz
|
jruderman
|
2007-02-21 17:46:19 PST
|
Summary
| bookmarked data: URLs can be used to cross domains
| bookmarked data: or javascript: URLs can be used to cross domains
|
cbook
|
2007-02-22 02:38:59 PST
|
CC
|
| carstenbook
|
bugzilla.spam2
|
2007-02-22 09:06:16 PST
|
CC
|
| bugzilla.spam2
|
reed
|
2007-02-22 22:57:24 PST
|
CC
|
| reed
|
cbook
|
2007-02-23 00:26:01 PST
|
Flags
|
| blocking1.8.1.3?
|
hskupin
|
2007-02-23 04:26:50 PST
|
CC
|
| hskupin
|
pcvrcek
|
2007-02-23 04:48:19 PST
|
CC
|
| bugs
|
steve.england
|
2007-02-23 04:49:55 PST
|
CC
|
| steve.england
|
dveditz
|
2007-02-24 09:06:19 PST
|
Status
| UNCONFIRMED
| NEW
|
Ever confirmed
| 0
| 1
|
gavin.sharp
|
2007-02-24 12:20:31 PST
|
CC
|
| gavin.sharp
|
ismail
|
2007-02-25 03:08:28 PST
|
CC
|
| ismail
|
jruderman
|
2007-02-26 14:11:30 PST
|
Attachment #256474
Attachment mime type
| application/octet-stream
| text/plain
|
Attachment #256474
Attachment is patch
| 0
| 1
|
martijn.martijn
|
2007-02-26 14:51:42 PST
|
Keywords
|
| uiwanted
|
CC
|
| beltzner
|
bzbarsky
|
2007-02-27 08:58:54 PST
|
CC
|
| cst, mikepinkerton, neil
|
samuel.sidler+old
|
2007-02-27 09:04:45 PST
|
CC
|
| stuart.morgan, alqahira, mark, stridey
|
bugzilla-graveyard
|
2007-02-27 09:10:49 PST
|
CC
|
| bugzilla
|
martynas
|
2007-02-27 10:37:46 PST
|
CC
|
| martynas
|
fullmetaljacket.xp+bugmail
|
2007-02-27 18:04:15 PST
|
CC
|
| fullmetaljacket.xp+bugmail
|
bugzillamozillaorg_serge_20140323
|
2007-02-27 19:58:55 PST
|
Blocks
|
| 372035
|
chris
|
2007-02-27 21:28:13 PST
|
CC
|
| moz2
|
robert
|
2007-03-01 22:01:32 PST
|
CC
|
| rparenton
|
dveditz
|
2007-03-19 11:43:45 PDT
|
Flags
| blocking1.8.1.4?
| blocking1.8.1.4+
|
dveditz
|
2007-04-04 11:08:38 PDT
|
Assignee
| nobody
| mconnor
|
mconnor
|
2007-04-04 19:46:31 PDT
|
Assignee
| mconnor
| gavin.sharp
|
dveditz
|
2007-04-27 11:46:59 PDT
|
Flags
| blocking1.8.1.4+
| blocking1.8.1.5+, blocking-firefox3?
|
mconnor
|
2007-05-25 13:32:06 PDT
|
CC
|
| mconnor
|
Flags
| blocking-firefox3?
| blocking-firefox3+
|
mconnor
|
2007-05-28 16:00:20 PDT
|
Target Milestone
| ---
| Firefox 3 alpha6
|
mconnor
|
2007-06-26 10:02:59 PDT
|
Target Milestone
| Firefox 3 alpha6
| Firefox 3 beta1
|
dveditz
|
2007-07-09 11:39:14 PDT
|
Flags
| blocking1.8.1.5+
| blocking1.8.1.6?
|
mconnor
|
2007-07-20 08:34:51 PDT
|
Target Milestone
| Firefox 3 M7
| Firefox 3 M8
|
dveditz
|
2007-08-07 12:07:05 PDT
|
Flags
| blocking1.8.1.7?
| blocking1.8.1.7+
|
jbecerra
|
2007-08-07 12:07:23 PDT
|
CC
|
| jbecerra
|
mconnor
|
2007-08-12 03:18:10 PDT
|
Target Milestone
| Firefox 3 M8
| Firefox 3 M9
|
mconnor
|
2007-10-01 13:36:51 PDT
|
Target Milestone
| Firefox 3 M9
| Firefox 3 M10
|
dveditz
|
2007-10-01 15:17:50 PDT
|
Flags
| blocking1.8.1.8+
| blocking1.8.1.9+, wanted1.8.1.x+
|
bob
|
2007-11-01 03:20:47 PDT
|
CC
|
| bclary
|
mconnor
|
2007-11-09 14:18:13 PST
|
Priority
| --
| P3
|
Target Milestone
| Firefox 3 M10
| Firefox 3 M11
|
dveditz
|
2007-12-13 18:08:24 PST
|
Blocks
|
| 376635
|
jwalden
|
2007-12-16 06:22:15 PST
|
CC
|
| jwalden+bmo
|
dveditz
|
2008-01-24 14:17:10 PST
|
Flags
| blocking1.8.1.12+
| blocking1.8.1.13?
|
dveditz
|
2008-02-15 11:53:15 PST
|
Flags
| blocking1.8.1.13?
| blocking1.8.1.13+
|
samuel.sidler+old
|
2008-02-29 12:03:20 PST
|
Flags
| blocking1.8.1.13+
| blocking1.8.1.13-, blocking1.8.1.14+
|
mconnor
|
2008-03-28 11:56:39 PDT
|
Flags
| blocking-firefox3+
| blocking-firefox3-, wanted-firefox3+
|
dveditz
|
2008-06-02 11:36:25 PDT
|
Flags
| blocking1.8.1.15+
|
|
SmoothPorcupine
|
2008-06-03 21:30:17 PDT
|
CC
|
| SmoothPorcupine
|
gavin.sharp
|
2008-07-03 15:36:47 PDT
|
Priority
| P3
| --
|
Assignee
| gavin.sharp
| nobody
|
Target Milestone
| Firefox 3 beta3
| ---
|
hickendorffbas
|
2008-12-30 01:30:45 PST
|
CC
|
| hickendorffbas
|
highmind63
|
2009-02-02 16:16:09 PST
|
CC
|
| highmind63
|
qiyanlai
|
2009-07-19 17:46:24 PDT
|
CC
|
| qiyanlai
|
tdowner
|
2009-11-15 06:59:57 PST
|
CC
|
| michael.s.gilbert
|
mh+mozilla
|
2009-12-15 05:34:11 PST
|
CC
|
| mh+mozilla
|
mconnor
|
2010-02-24 06:26:46 PST
|
CC
| mconnor
|
|
jruderman
|
2010-03-13 01:20:01 PST
|
Blocks
| 376635
|
|
stuart.morgan+bugzilla
|
2010-05-30 09:33:25 PDT
|
CC
| stuart.morgan+bugzilla
|
|
ipottinger
|
2010-06-02 15:07:50 PDT
|
CC
|
| ipottinger
|
martijn.martijn
|
2011-01-02 14:04:47 PST
|
CC
| martijn.martijn
|
|
mbeltzner
|
2011-04-07 13:14:47 PDT
|
CC
| beltzner
|
|
jruderman
|
2011-05-12 18:40:28 PDT
|
Whiteboard
| [sg:want]
| [sg:want][xss with nearly normal user interaction and no upside]
|
Summary
| bookmarked data: or javascript: URLs can be used to cross domains
| Don't allow bookmarking an evaluated+loaded javascript: URL
|
CC
|
| bsterne
|
jruderman
|
2011-05-12 18:43:01 PDT
|
Blocks
|
| bookmarklet-xss
|
al_9x
|
2011-05-16 19:04:11 PDT
|
CC
|
| al_9x
|
antoine.mozilla
|
2011-06-24 18:38:25 PDT
|
CC
|
| geekshadow
|
limi
|
2012-01-20 15:22:13 PST
|
Keywords
| uiwanted
|
|
curtisk
|
2012-05-03 12:31:55 PDT
|
Keywords
|
| sec-want
|
csthomas
|
2012-06-04 19:35:15 PDT
|
CC
| cst
|
|
tommi.leipzig
|
2014-12-29 17:46:04 PST
|
CC
|
| tommi.leipzig
|
tracking-e10s
| ---
| ?
|
jmathies
|
2015-01-06 12:46:13 PST
|
CC
|
| jmathies
|
tracking-e10s
| ?
| -
|
morteza.zarif
|
2015-01-26 18:49:45 PST
|
CC
|
| morteza.zarif
|
marsjaninzmarsa
|
2017-08-12 20:35:54 PDT
|
CC
|
| marsjaninzmarsa
|
automation
|
2022-10-10 14:42:05 PDT
|
Severity
| normal
| S3
|