diff options
author | tsepez@chromium.org <tsepez@chromium.org@0039d316-1c4b-4281-b951-d872f2087c98> | 2011-10-20 20:53:48 +0000 |
---|---|---|
committer | tsepez@chromium.org <tsepez@chromium.org@0039d316-1c4b-4281-b951-d872f2087c98> | 2011-10-20 20:53:48 +0000 |
commit | 7a1dc837a4101a14bbea43a1c8b9983322007257 (patch) | |
tree | 97b00781331b2c4afca8ae06b03d5b5fd303378a /chrome/browser/ui/webui/chrome_url_data_manager_backend.cc | |
parent | dbfaa441731f335d978dbb79bcb43ad2b14edfac (diff) | |
download | chromium_src-7a1dc837a4101a14bbea43a1c8b9983322007257.zip chromium_src-7a1dc837a4101a14bbea43a1c8b9983322007257.tar.gz chromium_src-7a1dc837a4101a14bbea43a1c8b9983322007257.tar.bz2 |
Add Content-Security-Policy to chromeos chrome://active-downloads page. CSP
acts as a second line of defense against XSS flaws, but requires moving all
inline scripts out-of-line.
Committed: http://src.chromium.org/viewvc/chrome?view=rev&revision=104341
Review URL: http://codereview.chromium.org/8166006
git-svn-id: svn://svn.chromium.org/chrome/trunk/src@106570 0039d316-1c4b-4281-b951-d872f2087c98
Diffstat (limited to 'chrome/browser/ui/webui/chrome_url_data_manager_backend.cc')
-rw-r--r-- | chrome/browser/ui/webui/chrome_url_data_manager_backend.cc | 1 |
1 files changed, 0 insertions, 1 deletions
diff --git a/chrome/browser/ui/webui/chrome_url_data_manager_backend.cc b/chrome/browser/ui/webui/chrome_url_data_manager_backend.cc index a6fb3de..e4ca0e6 100644 --- a/chrome/browser/ui/webui/chrome_url_data_manager_backend.cc +++ b/chrome/browser/ui/webui/chrome_url_data_manager_backend.cc @@ -61,7 +61,6 @@ class ChromeURLContentSecurityPolicyExceptionSet insert(chrome::kChromeUIDialogHost); insert(chrome::kChromeUINewTabHost); #if defined(OS_CHROMEOS) - insert(chrome::kChromeUIActiveDownloadsHost); insert(chrome::kChromeUIEnterpriseEnrollmentHost); insert(chrome::kChromeUIKeyboardOverlayHost); insert(chrome::kChromeUIOobeHost); |