You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Firefox contains data URIs with chrome privileges (e.g. Scratchpad),
so for security reasons user scripts should never be allowed to run
on data URIs.
Fixesgreasemonkey#1767.
Ventero@82e6a87 removes the ability for user scripts to run on data URIs. See #1302 for a similar issue with about: URIs. The fix first conditionally allowed about: URIs, however because of #1375 about: URIs were completely disallowed, so I guess the same should be done with data URIs, unless someone is able to come up with a better fix.
Actually, the ability for scripts to run on data URIs was only silently added in the fix for #1302 (61695fe).
The problem is not because of it on runs data URIs, but why does it run on non-browser window like Scratchpad (and Stylish editor) and other dev tools (style editor and debugger)?
Consider a simple script (@grant it does not affect):
Thank you.
The text was updated successfully, but these errors were encountered: