Security/Reviews/Gaia/DownloadManager: Difference between revisions

Jump to navigation Jump to search
Line 75: Line 75:


=== Future Work ===
=== Future Work ===
[https://bugzilla.mozilla.org/show_bug.cgi?id=960749 960749] prevented us from being able to look for HTML injections via filenames. This will need to be checked once that bug is resolved.
[https://bugzilla.mozilla.org/show_bug.cgi?id=960749 960749] prevented us from being able to look for HTML injections via filenames. This will need to be checked once that bug is resolved. However, it appears to be an issue with the filesystem disallowing those characters, so most likely even after an error message is added, there will be no avenue to have those characters in the filename.


=== Issues ===
=== Issues ===
* https://bugzilla.mozilla.org/show_bug.cgi?id=960739
* https://bugzilla.mozilla.org/show_bug.cgi?id=960739
* https://bugzilla.mozilla.org/show_bug.cgi?id=960749
* https://bugzilla.mozilla.org/show_bug.cgi?id=960749
Confirmed users
353

edits

Navigation menu