File: sandbox-navigation-timing.tentative.html

package info (click to toggle)
thunderbird 1%3A128.14.0esr-1~deb12u1
  • links: PTS, VCS
  • area: main
  • in suites: bookworm
  • size: 4,334,824 kB
  • sloc: cpp: 7,391,917; javascript: 5,617,271; ansic: 3,833,216; python: 1,230,742; xml: 619,690; asm: 456,022; java: 179,892; sh: 118,796; makefile: 21,908; perl: 14,825; objc: 12,399; yacc: 4,583; pascal: 2,973; lex: 1,720; ruby: 1,190; exp: 762; sql: 674; awk: 580; php: 436; lisp: 430; sed: 70; csh: 10
file content (29 lines) | stat: -rw-r--r-- 1,320 bytes parent folder | download | duplicates (26)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
<!DOCTYPE html>
<meta charset="utf-8">
<title>Sandbox Navigation Timing</title>
<script src=/resources/testharness.js></script>
<script src=/resources/testharnessreport.js></script>
<html></html>
<script>
  const sandboxUrl = location.pathname.substring(0, location.pathname.lastIndexOf('/') + 1) + 'sandbox-navigation-timing-iframe.tentative.html';
  async_test(t => {
    const iframe = document.createElement('iframe');
    iframe.src = sandboxUrl;
    document.body.appendChild(iframe); // Navigation starts; value of sandbox flags locked on.
    // This should not affect the sandbox value used for both about:blank document
    // and the final document in iframe.
    iframe.sandbox = 'allow-scripts';
    const iframeAboutBlankDocument = iframe.contentDocument;

    iframe.onload = t.step_func(() => {
      const iframeAboutBlankContents = iframeAboutBlankDocument.querySelectorAll('body');
      assert_equals(iframeAboutBlankContents[0].tagName, "BODY",
        "about:blank document's contents should still be accessible");

      iframe.contentWindow.postMessage("is iframe sandboxed?", "*");
    });
    window.onmessage = t.step_func_done(e => {
      assert_equals(e.data.result, 'iframe not sandboxed');
    });
  }, 'setting sandbox attribute should not affect current document in iframe');
</script>