dom/security/nsCSPContext.cpp
c6bc36c3b43c05b1f50f454a04b563a2cc6c1569
created 2017-07-21 11:50 +0800
pushed 2017-09-14 16:50 +0000
Bevis Tseng Bevis Tseng - Bug 1378930 - Part 1: Remove nsINamed::SetName(). r=billm
129793760f2d718ed61ba17d9aacd57c7ec6785b
created 2017-07-12 15:13 +1000
pushed 2017-09-14 16:50 +0000
Nicholas Nethercote Nicholas Nethercote - Bug 1380227 - Avoid many UTF16toUTF8 and UTF8toUTF16 conversions in nsStringBundle. r=emk.
312f7a5a2c08d394a2403c837e5ee546dd4103d7
created 2017-06-12 12:34 -0700
pushed 2017-09-14 16:50 +0000
Bill McCloskey Bill McCloskey - Bug 1372405 - Provide names for all runnables in the tree (r=froydnj)
4472d2623eceb63b76d650103b0e20f8c7d7c775
created 2017-06-21 13:59 +0200
pushed 2017-09-14 16:50 +0000
Carsten "Tomcat" Book Carsten "Tomcat" Book - Backed out changeset 4f6302a98ae4 (bug 1372405)
4f6302a98ae41ff2d57c768996d1edbb0afda73a
created 2017-06-12 12:34 -0700
pushed 2017-09-14 16:50 +0000
Bill McCloskey Bill McCloskey - Bug 1372405 - Provide names for all runnables in the tree (r=froydnj)
e61d71c2a3a32013f097777dfa68a9320d4ae61b
created 2017-06-20 08:27 +0200
pushed 2017-09-14 16:50 +0000
Carsten "Tomcat" Book Carsten "Tomcat" Book - Backed out changeset 9846de3bd954 (bug 1372405)
9846de3bd9545fb2c2b803a36af85568ccf2473b
created 2017-06-12 12:34 -0700
pushed 2017-09-14 16:50 +0000
Bill McCloskey Bill McCloskey - Bug 1372405 - Provide names for all runnables in the tree (r=froydnj)
3611ff7a79e6b616088bc4bf14e7ba8cdfe8bebf
created 2017-06-13 17:50 -0700
pushed 2017-09-14 16:50 +0000
Wes Kocher Wes Kocher - Backed out 6 changesets (bug 1371699) for various failures including frequent img-blobURI-2.html failures and leaks a=backout
2d67624a01dc4894d647ebae9aaac75097b3b353
created 2017-06-13 16:16 -0400
pushed 2017-09-14 16:50 +0000
Boris Zbarsky Boris Zbarsky - Bug 1371699 part 3. Make nsIStringInputStream not inherit from nsIInputStream anymore. r=bkelly
68517278b72ef27b1b14c15c5c7155b4386a5257
created 2017-06-07 21:17 +0200
pushed 2017-07-31 14:08 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1024557 - Ignore x-frame-options if CSP with frame-ancestors exists. r=smaug
92676fadb9e2f129418e58d75b1dc38760b7110c
created 2017-05-10 08:52 +0200
pushed 2017-07-31 14:08 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1355801: Nonce should only apply to script and style. r=dveditz
648099cae850287db641dfad6041f50a72ab0373
created 2017-03-29 10:20 +0800
pushed 2017-07-31 14:08 +0000
Thomas Nguyen Thomas Nguyen - Bug 1339004 - Do DocGroup labeling in dom/security. r=ckerschb,smaug
828e8f37ba26aca276952462baa176fc02e79975
created 2016-12-20 11:49 +0800
pushed 2017-07-31 14:08 +0000
Wei-Cheng Pan Wei-Cheng Pan - Bug 1310127 - Part 17: Use MOZ_MUST_USE in netwerk/protocol/http r=smaug
495b8a307555744c3b8320098a4e526b9bc6404e
created 2016-12-15 20:16 -0700
pushed 2017-06-05 19:31 +0000
Tom Tromey Tom Tromey - Bug 1060419 - make log_print use Printf.h, r=froydnj
13048a5b9d7a764307cb021b3aa2cd5a03368b19
created 2017-02-01 14:58 -0500
pushed 2017-06-05 19:31 +0000
Brendan Dahl Brendan Dahl - Bug 1277102 - Use nsIDocShellTreeItem::ItemType during nsCSPContext::PermitsAncestry. r=ckerschb
e9835516c8c59aa09cbd34b9b74ccfaa3b8ac744
created 2017-01-22 18:05 +0100
pushed 2017-04-10 20:44 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1329288: Allow content policy consumers to identify contentPolicy checks from docshell. r=bz,kmaglione
f10f80aa43f2eea77e3e0698535141ce54db309a
created 2017-01-22 13:09 +0100
pushed 2017-04-10 20:44 +0000
Sebastian Hengst Sebastian Hengst - Backed out changeset 69fb2fc61535 (bug 1329288)
69fb2fc615351bca97b998c9d70cb7e79edffd66
created 2017-01-22 07:30 +0100
pushed 2017-04-10 20:44 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1329288: Allow content policy consumers to identify contentPolicy checks from docshell. r=bz,kmaglione
6f60ec0d460a3aabf1865cdd638db81392d3f7a1
created 2017-01-05 11:29 +0800
pushed 2017-04-10 20:44 +0000
Thomas Nguyen Thomas Nguyen - Bug 1304623 - Create a pref to control the default referrer policy - part 3. r=bkelly
eac5fd08280a9cfa83925050cd70facc8252eac9
created 2016-11-09 11:31 +0100
pushed 2017-02-27 14:59 +0000
Sebastian Hengst Sebastian Hengst - Backed out changeset 9c1069e2a42e (bug 1236222) for failing xpcshell test test_csp_reports.js. r=backout
9c1069e2a42e1f296ff040694da3e712ec449ab6
created 2016-11-07 19:22 +0530
pushed 2017-02-27 14:59 +0000
Tanuja Sawant Tanuja Sawant - Bug 1236222 - CSP: Blocked URI should be empty for inline violations. r=ckerschb
22f5124ac4b6ba1e080081ac659871d178a9c929
created 2016-11-08 12:55 +0100
pushed 2017-02-27 14:59 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1299483 - CSP: Implement 'strict-dynamic', enforcement changes. r=dveditz,freddyb
19805d092001f47ba3d452066da4654e5380a27f
created 2016-10-14 20:07 +0200
pushed 2017-02-27 14:59 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1307321 - Use correct length of CSP report when sending violations. r=jrgm,freddyb
7107572c7119631ab31161b3d5e7a88f804723d2
created 2016-10-14 17:51 +0200
pushed 2017-02-27 14:59 +0000
Sebastian Hengst Sebastian Hengst - Backed out changeset f443b21ba9de (bug 1307321) for unexpected passing of scripthash-unicode-normalization.sub.html. r=backout
f443b21ba9de2a2acf18b1b07083dfa6fda4fd26
created 2016-10-14 15:23 +0200
pushed 2017-02-27 14:59 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1307321 - Use correct length of CSP report when sending violations. r=jrgm,freddyb
566cc2b60a8ca27bff5a4737b1fb8598869730bd
created 2016-09-12 14:30 -0700
pushed 2017-02-27 14:59 +0000
Kate McKinley Kate McKinley - Bug 1242019 - Truncate data URIs in CSP log messages. r=ckerschb
b516e1d6e46165d5553ec894fadc55ce514f862c
created 2016-08-26 16:02 +1000
pushed 2017-01-16 13:07 +0000
Nicholas Nethercote Nicholas Nethercote - Bug 1297961 (part 1) - Introduce nsURI::GetSpecOrDefault(). r=hurley.
f17ae97cb65e28d54a3601e2e879d18fdee8d0bd
created 2016-08-27 08:30 +0200
pushed 2017-01-16 13:07 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1298505 - CSP: Update StripURIForReporting to rely on NS_SecurityCompareURIs. r=dveditz
acb05a7c5ee7183ac013196c91106c5b6b246930
created 2016-08-24 09:24 +0200
pushed 2017-01-16 13:07 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1297051 - CSPRO should not block mixed content. r=dveditz
360df5276cf6e2d7294ce0e122952cf56bc5372e
created 2016-08-12 17:36 +1000
pushed 2017-01-16 13:07 +0000
Nicholas Nethercote Nicholas Nethercote - Bug 1294645 - Don't use NS_CALLBACK for callbacks in nsI{Input,Output,UnicharInput},Stream.idl. r=froydnj.
d37875173600f0a28dcac0965b8d47669674c550
created 2016-08-11 12:09 -0400
pushed 2017-01-16 13:07 +0000
Michael Layzell Michael Layzell - Bug 1293001 - Part 2: Change the BinaryName of nsIContentSecurityPolicy::getPolicy from GetPolicy (which overloaded another virtual method), to GetPolicyString, r=froydnj
b09d90288666fb3afb11877fc45527b904ef23db
created 2016-08-08 12:18 +1000
pushed 2017-01-16 13:07 +0000
Nicholas Nethercote Nicholas Nethercote - Bug 1293603 (part 2) - Make Run() declarations consistent. r=erahm.
b0726c0c5d3000060985db919150ccd991c879b5
created 2016-08-27 08:30 +0200
pushed 2016-10-31 18:13 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1298505 - CSP: Update StripURIForReporting to rely on NS_SecurityCompareURIs. r=dveditz a=lizzard
7773a88b7025976105e73787e3f5e7541c6396df
created 2016-08-24 09:24 +0200
pushed 2016-10-31 18:13 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1297051 - CSPRO should not block mixed content. r=dveditz a=ritu
282f7afd67657dda8e2e8568e5ac6f609311a03b
created 2016-07-20 22:03 -0700
pushed 2016-10-31 18:13 +0000
Chris Peterson Chris Peterson - Bug 1277106 - Part 2: Expand MOZ_UTF16() strings to u"" string literals. r=Waldo
8033414023e2b84b6f8608ce27c1ad3a9b0e321b
created 2016-07-12 17:46 +0800
pushed 2016-10-31 18:13 +0000
Thomas Nguyen Thomas Nguyen - Bug 1286024 - Replace no document in SetRequestContext warning with a log. r=ckerschb
a7788974daac58f5d87049352f21982567f16cce
created 2016-06-29 07:48 -0700
pushed 2016-10-31 18:13 +0000
Paul Roberts Paul Roberts - Bug 671389 - Implement CSP sandbox directive. r=ckerschb r=smaug
0bed705c143059e74abd71b5af404dbb599af88f
created 2016-06-22 14:13 +0200
pushed 2016-10-31 18:13 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1268327 - ReferrerPolicy should not be delivered through CSPRO r=tnguyen
471079c11bee171ebac01b63c4be3a4d62ee83ef
created 2016-05-30 15:17 +0800
pushed 2016-10-31 18:13 +0000
Thomas Nguyen Thomas Nguyen - Bug 1223838 - Fix wrong policy associated with empty string. r=fkiefer,hsivonen
4ec44a5cbac226006806a193e9ddace50f4310ec
created 2016-08-27 08:30 +0200
pushed 2016-09-05 20:01 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1298505 - CSP: Update StripURIForReporting to rely on NS_SecurityCompareURIs. r=dveditz a=lizzard
ebaf56c0d7677abb2ef80a840666ef7e061f4b38
created 2016-08-24 09:24 +0200
pushed 2016-09-05 20:01 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1297051 - CSPRO should not block mixed content. r=dveditz a=lizzard
b38b4072fd41cb367e3303b37e5cf5c30a277f26
created 2016-05-31 11:14 +0200
pushed 2016-09-05 20:01 +0000
Frederik Braun Frederik Braun - Bug 1265318: add require-sri-for CSP directive. r=ckerschb
fcc0936b576daa150697671849a191009ca33811
created 2016-04-25 17:23 -0700
pushed 2016-09-05 20:01 +0000
Kyle Huey Kyle Huey - Bug 1265927: Move nsRunnable to mozilla::Runnable, CancelableRunnable to mozilla::CancelableRunnable. r=froydnj
f9c7140ccd2e86b8ad75e54db5ae7d3c21c66819
created 2016-04-23 20:42 -0700
pushed 2016-07-25 16:35 +0000
Kris Maglione Kris Maglione - Bug 1254194: Allow iterating over and inspecting sources of parsed CSP directives. r=ckerschb
34e67475a707a73aa9a853496bf226140160376e
created 2016-04-17 20:09 +0200
pushed 2016-07-25 16:35 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1262635 - Don't strip URIs of ftp: when sending reports. r=dveditz
30010c0e58af2b863b6f56bb9d1e519128832eb5
created 2016-04-14 12:51 +0200
pushed 2016-07-25 16:35 +0000
Matt Robenolt Matt Robenolt - Bug 1192840 - Fix CSP report content-type. r=ckerschb
08b8dd56a2b89f325c985b55de2f8ebf2dc622fb
created 2016-03-02 13:00 +0100
pushed 2016-07-25 16:35 +0000
Franziskus Kiefer Franziskus Kiefer - Bug 1252829 - CSP Telemetry. r=ckerschb, p=bsmedberg
8374f1f94ea541cf8a5e9c873309e61160717eea
created 2016-01-13 20:58 -0800
pushed 2016-07-25 16:35 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1122236 - CSP: Implement block-all-mixed-content (r=tanvi,kate,mrbkap)
f72ada9941bbfe936e1d4704e28b950200884352
created 2016-01-27 15:56 -0800
pushed 2016-06-01 01:31 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1243178: CSP - Skip sending reports for non http schemes. r=dveditz
cc28ecb2b687d39c69efa4e53341999872956509
created 2016-02-11 17:36 -0800
pushed 2016-06-01 01:31 +0000
Francois Marier Francois Marier - Bug 1247464 - Run CSP report URIs through the URL classifier. r=ckerschb
7a7c3d89e43b2d8b6f6e367c898cd621bec43c78
created 2016-01-27 15:56 -0800
pushed 2016-04-15 21:02 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1243178: CSP - Skip sending reports for non http schemes (r=dveditz) a=ritu
ff4ffb78aa5601900d5d4c71cd870ac9bb3e51ad
created 2016-01-26 11:52 +0000
pushed 2016-04-15 21:02 +0000
Gijs Kruitbosch Gijs Kruitbosch - Bug 1242909, r=ckerschb a=sylvestre
febf0e69c996e1a6678e6d7877e6ef07e0011b2c
created 2016-01-14 13:21 -0800
pushed 2016-04-15 21:02 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1224694 - Unify and clean up initialization of CSP (r=sicking)
5154bb929236be80e13fd8aca413bb699321dd56
created 2016-01-27 15:56 -0800
pushed 2016-02-29 17:11 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1243178: CSP - Skip sending reports for non http schemes (r=dveditz) a=ritu
7cf15b20b34161ed59a440800cfee5d19f8d385d
created 2016-01-26 11:52 +0000
pushed 2016-02-29 17:11 +0000
Gijs Kruitbosch Gijs Kruitbosch - Bug 1242909, r=ckerschb a=sylvestre
481ff8485da5dbf3a712b9d2b534c76758d1d226
created 2016-01-14 12:36 -0800
pushed 2016-02-29 17:11 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1208946 - Strip URIs in CSP reports. r=dveditz, a=sylvestre
c728b4bd9be62afcfda73eba03edc3bd07aee33f
created 2015-11-23 11:09 -0800
pushed 2016-02-29 17:11 +0000
sajitk sajitk - Bug 1219478: Replace PRLogModuleInfo usage with LazyLogModule in dom folders except media.r=amerchesini
149cc9f89a2e6ac17e10ee926f739b0e2f4a2180
created 2015-11-14 19:29 -0800
pushed 2016-02-29 17:11 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 663570 - MetaCSP Part 6: CSP preload changes (r=sicking)
632197cb15891288551963bd8330fd17774e8e48
created 2015-11-14 19:27 -0800
pushed 2016-02-29 17:11 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 663570 - MetaCSP Part 1: CSP parser changes (r=sicking)
bfe8a49ff8808fd20f6432ee4294bcf7ad6640c6
created 2015-11-02 08:04 -0800
pushed 2016-02-29 17:11 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1219931 - CSP: Don't allow removing a policy (r=sicking)
less more (0) -100 -60 tip