W3C home > Mailing lists > Public > public-html@w3.org > October 2011

[Bug 14392] New: This is not an effective way to isolate documents if they import script via relative URLs or have forms that submit to relative URLs, so it seems dangerous to include in the HTML5 spec. See http://w2spconf.com/2008/papers/s2p1.pdf

From: <bugzilla@jessica.w3.org>
Date: Wed, 05 Oct 2011 19:05:02 +0000
To: public-html@w3.org
Message-ID: <bug-14392-2495@http.www.w3.org/Bugs/Public/>
http://www.w3.org/Bugs/Public/show_bug.cgi?id=14392

           Summary: This is not an effective way to isolate documents if
                    they import script via relative URLs or have forms
                    that submit to relative URLs, so it seems dangerous to
                    include in the HTML5 spec. See
                    http://w2spconf.com/2008/papers/s2p1.pdf
           Product: HTML WG
           Version: unspecified
          Platform: Other
               URL: http://www.whatwg.org/specs/web-apps/current-work/#ori
                    gin-0
        OS/Version: other
            Status: NEW
          Severity: normal
          Priority: P3
         Component: HTML5 spec (editor: Ian Hickson)
        AssignedTo: ian@hixie.ch
        ReportedBy: contributor@whatwg.org
         QAContact: public-html-bugzilla@w3.org
                CC: mike@w3.org, public-html-wg-issue-tracking@w3.org,
                    public-html@w3.org


Specification:
http://www.whatwg.org/specs/web-apps/current-work/multipage/origin-0.html
Multipage: http://www.whatwg.org/C#origin-0
Complete: http://www.whatwg.org/c#origin-0

Comment:
This is not an effective way to isolate documents if they import script via
relative URLs or have forms that submit to relative URLs, so it seems
dangerous to include in the HTML5 spec. See
http://w2spconf.com/2008/papers/s2p1.pdf

Posted from: 209.129.244.250
User agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_6_8) AppleWebKit/535.6
(KHTML, like Gecko) Chrome/16.0.899.0 Safari/535.6

-- 
Configure bugmail: http://www.w3.org/Bugs/Public/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.
Received on Wednesday, 5 October 2011 19:05:04 UTC

This archive was generated by hypermail 2.3.1 : Monday, 29 September 2014 09:39:28 UTC