[Bug 18975] registerContentHanlder and registerProtocolHandler open huge security and privacy holes

https://www.w3.org/Bugs/Public/show_bug.cgi?id=18975

Larry Masinter <lmm@acm.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |lmm@acm.org

--- Comment #2 from Larry Masinter <lmm@acm.org> 2012-09-22 17:27:49 UTC ---
See also threads on public-ietf-w3c 
starting 
 http://lists.w3.org/Archives/Public/public-ietf-w3c/2012Aug/0000.html
"web+: enabling websites to expose services with custom URI schemes to
registerProtocolHandler."

and
 http://lists.w3.org/Archives/Public/public-ietf-w3c/2012Sep/0004.html
"web+ and registerProtocolHandler"

and Chris Weber's blog post
http://web.lookout.net/2012/01/testing-registerprotocolhandler-and-web.html

-- 
Configure bugmail: https://www.w3.org/Bugs/Public/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the QA contact for the bug.

Received on Saturday, 22 September 2012 17:27:51 UTC