Skip to content
This repository has been archived by the owner on Dec 11, 2019. It is now read-only.

[hackerone] 414609 noscript issue #15232

Closed
diracdeltas opened this issue Sep 26, 2018 · 5 comments · Fixed by #15265
Closed

[hackerone] 414609 noscript issue #15232

diracdeltas opened this issue Sep 26, 2018 · 5 comments · Fixed by #15265

Comments

@diracdeltas
Copy link
Member

diracdeltas commented Sep 26, 2018

Test Case

Please go through the test case that was provided by @diracdeltas via QA Slack DM.

Original Reported Issue

https://hackerone.com/reports/414609

verified in latest release

@jumde
Copy link
Contributor

jumde commented Sep 27, 2018

Repros on

v.0.24.0
v.0.23.73 
v.0.23.31
v.0.22.810

Does not repro: v.0.22.727

@jumde
Copy link
Contributor

jumde commented Sep 29, 2018

Likely regression with muon 7.0.1

@GeetaSarvadnya
Copy link
Collaborator

GeetaSarvadnya commented Oct 5, 2018

Verified on Linux x64

  • 0.25.0 907c7e4
  • Muon 8.1.8
  • libchromiumcontent 69.0.3497.100

Verified with macOS 10.12.6 using

  • 0.25.0 907c7e4
  • Muon 8.1.8
  • libchromiumcontent 69.0.3497.100

Verified on Windows x64

  • 0.25.2 8ea2a9c
  • Muon 8.1.8
  • libchromiumcontent 69.0.3497.100

@diracdeltas
Copy link
Member Author

credit to xiaoyin liu and david albert

@xiaoyinl
Copy link

CVE-2018-1000815 was assigned to this bug.

@brave brave locked and limited conversation to collaborators Jan 3, 2019
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.