Security/SameSiteCookies: Difference between revisions

→‎Implementation Bugs: 1456652 has landed in Nightly
m (→‎Implementation Bugs: formatting typo)
(→‎Implementation Bugs: 1456652 has landed in Nightly)
 
(18 intermediate revisions by the same user not shown)
Line 17: Line 17:
| {{nbug|1452496}} || Block setting in cross-origin contexts || Christoph || Yes || Yes || Yes
| {{nbug|1452496}} || Block setting in cross-origin contexts || Christoph || Yes || Yes || Yes
|-
|-
| {{nbug|1452699}} || Gating pref || Francois || Yes || '''<font color="red">No</font>''' || Yes
| {{nbug|1452699}} || Gating pref || Francois || Yes || Yes || Yes
|}
|}


Line 30: Line 30:
| {{nbug|1453814}} || Bypass via redirects || Christoph || Yes || Yes || Yes
| {{nbug|1453814}} || Bypass via redirects || Christoph || Yes || Yes || Yes
|-
|-
| {{nbug|1453818}} || Bypass in reader mode || Francois || No || No || No
| {{nbug|1453818}} || Bypass in reader mode || Francois || Yes || Yes || No
|-
|-
| {{nbug|1454027}} || Bypass in links within iframes || Christoph || Yes || Yes || Yes
| {{nbug|1454027}} || Bypass in links within iframes || Christoph || Yes || Yes || Yes
Line 38: Line 38:
| {{nbug|1454723}} || Handle sandboxed iframes correctly || - || - || - || No
| {{nbug|1454723}} || Handle sandboxed iframes correctly || - || - || - || No
|-
|-
| {{nbug|1454914}} || Don't treat WebExtensions load as foreign || Christoph || '''<font color="red">No</font>''' ||  '''<font color="red">No</font>''' || Yes
| {{nbug|1454914}} || Don't treat WebExtensions load as foreign || Christoph || Yes ||  Yes || Yes
|-
|-
| {{nbug|1455174}} || Inconsistencty with drag n' drop || - || - || - || No
| {{nbug|1455174}} || Inconsistencty with drag n' drop || - || - || - || No
|-
|-
| {{nbug|1455157}} || ThirdPartyUtil needs to treat more schemes as first-party || - || - || - || No
| {{nbug|1455342}} || Bypass via Save As || - || - || - || No
|-
|-
| {{nbug|1455342}} || Bypass via Save As || - || - || - || No
| {{nbug|1456106}} || Bypass via Flash || - || - || - || No
|-
| {{nbug|1456652}} || Reader mode bypass || Gijs || Yes || - || No
|}
|}


Line 62: Line 64:
! Bug !! Description !! Assignee !! In 61 !! In 60 !! Required
! Bug !! Description !! Assignee !! In 61 !! In 60 !! Required
|-
|-
| {{nbug|1454605}} || Investigate "WPT" failures || - || No || No || No
| {{nbug|1454605}} || Investigate "WPT" failures || - || - || - || No
|-
| {{nbug|1454721}} || Test about:blank and about:srcdoc || Christoph || Yes || - || No
|-
| {{nbug|1455162}} || Test about: URLs with and without same-site.enabled || Francois || Yes || - || No
|-
| {{nbug|1455406}} || Convert test_same_site_cookies_webextension to an xpcshell test || - || - || - || No
|-
|-
| {{nbug|1454721}} || Test about:blank and about:srcdoc || Christoph || Yes || '''<font color="red">No</font>''' || Yes
| {{nbug|1456407}} || Test meta refresh || Yes || - || - || No
|-
|-
| {{nbug|1455162}} || Test about: URLs with and without same-site.enabled || Francois || No || - || No
| {{nbug|1456408}} || Test redirected top-level pages || - || - || - || No
|-
|-
| - || Fix [https://github.com/mikewest/rfc6265-biz rfc6265-biz] invalid attribute tests || - || - || - || No
| - || Fix [https://github.com/mikewest/rfc6265-biz rfc6265-biz] invalid attribute tests || - || - || - || No
Line 81: Line 89:
| {{nbug|1454781}} || Console warning || - || No
| {{nbug|1454781}} || Console warning || - || No
|-
|-
| [https://docs.google.com/document/d/1ZFOkNUKNXRaiNV-erj4EJzCH4Z72qutTye3jkzgmcdo/edit draft] || Announcement blog post || - || No
| [https://blog.mozilla.org/security/2018/04/24/same-site-cookies-in-firefox-60/ 2018-04-24] || Announcement blog post || - || Yes
|}
|}
Confirmed users
908

edits