[Bug 14392] New: This is not an effective way to isolate documents if they import script via relative URLs or have forms that submit to relative URLs, so it seems dangerous to include in the HTML5 spec. See http://w2spconf.com/2008/papers/s2p1.pdf

http://www.w3.org/Bugs/Public/show_bug.cgi?id=14392

           Summary: This is not an effective way to isolate documents if
                    they import script via relative URLs or have forms
                    that submit to relative URLs, so it seems dangerous to
                    include in the HTML5 spec. See
                    http://w2spconf.com/2008/papers/s2p1.pdf
           Product: HTML WG
           Version: unspecified
          Platform: Other
               URL: http://www.whatwg.org/specs/web-apps/current-work/#ori
                    gin-0
        OS/Version: other
            Status: NEW
          Severity: normal
          Priority: P3
         Component: HTML5 spec (editor: Ian Hickson)
        AssignedTo: ian@hixie.ch
        ReportedBy: contributor@whatwg.org
         QAContact: public-html-bugzilla@w3.org
                CC: mike@w3.org, public-html-wg-issue-tracking@w3.org,
                    public-html@w3.org


Specification:
http://www.whatwg.org/specs/web-apps/current-work/multipage/origin-0.html
Multipage: http://www.whatwg.org/C#origin-0
Complete: http://www.whatwg.org/c#origin-0

Comment:
This is not an effective way to isolate documents if they import script via
relative URLs or have forms that submit to relative URLs, so it seems
dangerous to include in the HTML5 spec. See
http://w2spconf.com/2008/papers/s2p1.pdf

Posted from: 209.129.244.250
User agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_6_8) AppleWebKit/535.6
(KHTML, like Gecko) Chrome/16.0.899.0 Safari/535.6

-- 
Configure bugmail: http://www.w3.org/Bugs/Public/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.

Received on Wednesday, 5 October 2011 19:05:04 UTC