Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Issue: Major Security Flaw #152

Closed
Ephellon opened this issue Jan 26, 2020 · 2 comments
Closed

Issue: Major Security Flaw #152

Ephellon opened this issue Jan 26, 2020 · 2 comments
Assignees
Labels
bug this item causes errors that make the project unusable enhancement this item makes the project better in some way help-wanted outside assistance is recommended for this item on-watch this issue is currently under active watch wiki requests that can be added to the Wiki for future users

Comments

@Ephellon
Copy link
Collaborator

Describe the error
No event listener asks for "isTrusted" (explicitly granted by user).

To Reproduce
Steps to reproduce the behavior:

  1. N/A

Estimated location
utils.js

Screenshots
N/A

Extension Information

  • Version: 4.1
  • Source: store GitHub
  • Browser: chrome firefox edge opera

Additional comments
Fixed before opening ticket.

@Ephellon Ephellon added bug this item causes errors that make the project unusable enhancement this item makes the project better in some way help-wanted outside assistance is recommended for this item labels Jan 26, 2020
@Ephellon Ephellon self-assigned this Jan 26, 2020
@Ephellon
Copy link
Collaborator Author

Ephellon commented Jan 26, 2020

Simply, scripts can grant their own permissions.

@Ephellon Ephellon added on-watch this issue is currently under active watch wiki requests that can be added to the Wiki for future users labels Jun 7, 2020
@Ephellon
Copy link
Collaborator Author

Ephellon commented Jun 7, 2020

Keeping an eye peeled for anything that circumvents the isTrusted method

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug this item causes errors that make the project unusable enhancement this item makes the project better in some way help-wanted outside assistance is recommended for this item on-watch this issue is currently under active watch wiki requests that can be added to the Wiki for future users
Projects
None yet
Development

No branches or pull requests

1 participant