Le samedi 14 novembre 2009 à 20:36 -0500, Michael Gilbert a écrit : 
> The following CVE (Common Vulnerabilities & Exposures) id was
> published.
> 
> CVE-2007-1084[0]:
> | Mozilla Firefox 2.0.0.1 and earlier does not prompt users before
> | saving bookmarklets, which allows remote attackers to bypass the
> | same-domain policy by tricking a user into saving a bookmarklet with a
> | data: scheme, which is executed in the context of the last visited web
> | page.
> 
> If you fix the vulnerability please also make sure to include the
> CVE id in your changelog entry.

What’s a bookmarklet? I don’t even know whether epiphany supports this. 

Cheers, 
-- 
 .''`.      Josselin Mouette
: :' :
`. `'   “I recommend you to learn English in hope that you in
  `-     future understand things”  -- Jörg Schilling

Attachment: signature.asc
Description: Ceci est une partie de message numériquement signée

Reply via email to