Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: cherry-pick fix from chromium issue 1074317 #24558

Merged
merged 1 commit into from
Jul 16, 2020

Conversation

zcbenz
Copy link
Member

@zcbenz zcbenz commented Jul 15, 2020

[1074317] [High] [CVE-2020-6511]: Security: The CSP reports and stacktraces of errors leaks post-redirect URL for <script>
Backport https://chromium.googlesource.com/chromium/src/+/0b707cbaa2cb806162797be55caf9f8074fbdccf

Notes: fix: remove leaks of post-redirect URL for <script> in the CSP reports and stacktraces of errors (Chromium security issue 1074317)

@zcbenz zcbenz requested a review from a team as a code owner July 15, 2020 11:03
@electron-cation electron-cation bot added the new-pr 🌱 PR opened in the last 24 hours label Jul 15, 2020
@zcbenz zcbenz added backport-check-skip Skip trop's backport validity checking 7-3-x labels Jul 15, 2020
@zcbenz zcbenz force-pushed the cherry-pick/1074317/7-3-x branch from 8dad2de to aef6b48 Compare July 15, 2020 11:24
@zcbenz zcbenz force-pushed the cherry-pick/1074317/7-3-x branch from aef6b48 to becbf5b Compare July 15, 2020 23:17
@zcbenz zcbenz merged commit 6ca5c97 into 7-3-x Jul 16, 2020
@release-clerk
Copy link

release-clerk bot commented Jul 16, 2020

Release Notes Persisted

fix: remove leaks of post-redirect URL for <script> in the CSP reports and stacktraces of errors (Chromium security issue 1074317)

@zcbenz zcbenz deleted the cherry-pick/1074317/7-3-x branch July 16, 2020 03:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
7-3-x backport-check-skip Skip trop's backport validity checking new-pr 🌱 PR opened in the last 24 hours
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants