Fri, 16 Jan 2015 04:50:19 +0100
Replace accessor implementation with direct member state manipulation, by
request https://trac.torproject.org/projects/tor/ticket/9701#comment:32
michael@0 | 1 | document.open(); |
michael@0 | 2 | document.write("This is insecure XSS script " + document.cookie); |
michael@0 | 3 | isSecurityState("broken", "security broken after document write from unsecure script"); |
michael@0 | 4 | finish(); |