Merging fix from 4.0x branch. It's not clear that we really want to call GetURLForReferral when the passed referer is NIL since it breaks Smart Browsing keywords and does not actually appear to be needed to fix bug #90892 (which is why it was originally added). It's also a security hole since it causes the URL of the front window to be sent as the referer even if the user manually types in a URL.
git-svn-id: svn://10.0.0.236/trunk@9403 18797224-902f-48f8-a5cc-f745e15eee43
This commit is contained in:
@@ -825,6 +825,11 @@ CURLDispatchInfo::CURLDispatchInfo(
|
||||
mIsWaitingForMochaImageLoad(inWaitingForMochaImageLoad),
|
||||
mWindowResID(inWindowResID)
|
||||
{
|
||||
#if 0
|
||||
// It's not clear that we really want to call GetURLForReferral when the passed referer is
|
||||
// NIL since it breaks Smart Browsing keywords and does not actually appear to be needed to
|
||||
// fix bug #90892. It's also a security hole since it causes the URL of the front window to
|
||||
// be sent as the referer even if the user manually types in a URL.
|
||||
if (inTargetContext && mURLStruct->referer == NULL)
|
||||
{
|
||||
cstring theReferer = inTargetContext->GetCurrentURL();
|
||||
@@ -832,6 +837,8 @@ CURLDispatchInfo::CURLDispatchInfo(
|
||||
mURLStruct->referer = XP_STRDUP(theReferer);
|
||||
mTargetContext = inTargetContext;
|
||||
}
|
||||
#endif
|
||||
|
||||
if (inURLStruct)
|
||||
mURLType = NET_URL_Type(NET_URLStruct_Address(inURLStruct));
|
||||
else
|
||||
|
||||
Reference in New Issue
Block a user