diff options
author | Andrey Kosyakov <caseq@chromium.org> | 2020-01-10 04:45:57 +0000 |
---|---|---|
committer | Michael Brüning <michael.bruning@qt.io> | 2020-03-06 12:03:05 +0000 |
commit | ada63371bafd041317141b7bf15674b5366df3fc (patch) | |
tree | e7485b5a6a88a4458168a5a0876f98f65523dcc9 /chromium/content/public/browser/devtools_agent_host_client.cc | |
parent | feeaf8ecd52e7a1fd95ebf989db58e4bc2253390 (diff) | |
download | qtwebengine-chromium-ada63371bafd041317141b7bf15674b5366df3fc.tar.gz |
[Backport] CVE-2020-6392 - Insufficient policy enforcement in extensions
Manual backport of patch originally reviewed on:
https://chromium-review.googlesource.com/c/chromium/src/+/1956529
https://chromium-review.googlesource.com/c/chromium/src/+/1992764:
DevTools: check session can inspect URL we're about to navigate to
TBR=rdevlin.cronin@chromium.org
(cherry picked from commit 0788b1d419f78050f1114fffefd1f68cd88d1dab)
Bug: 1030411
Change-Id: I31477509283e166cf51f58d617df95628dcb0f60
Reviewed-by: Jüri Valdmann <juri.valdmann@qt.io>
Diffstat (limited to 'chromium/content/public/browser/devtools_agent_host_client.cc')
-rw-r--r-- | chromium/content/public/browser/devtools_agent_host_client.cc | 4 |
1 files changed, 1 insertions, 3 deletions
diff --git a/chromium/content/public/browser/devtools_agent_host_client.cc b/chromium/content/public/browser/devtools_agent_host_client.cc index 213b1d64b0b..3ac56e10213 100644 --- a/chromium/content/public/browser/devtools_agent_host_client.cc +++ b/chromium/content/public/browser/devtools_agent_host_client.cc @@ -6,9 +6,7 @@ namespace content { -bool DevToolsAgentHostClient::MayAttachToRenderer( - content::RenderFrameHost* render_frame_host, - bool is_webui) { +bool DevToolsAgentHostClient::MayAttachToURL(const GURL& url, bool is_webui) { return true; } |