• Dana Fried's avatar
    Fix for potential security issue. · a163a67b
    Dana Fried authored
    Changes two behaviors around hover cards:
     - overlong domains are now middle-elided, reducing the chance that bad
       data at either the beginning or end (depending on scheme) will
       mislead the user
     - blob: URLs now display as "temporary data" and no effort is made to
       display the "domain" of these URLs as it is not interesting at all to
       the user and only a source of potential exploitation
    
    Bug: 1133183
    Change-Id: I4779fa477a05e0017acffb2d9b98290939887f16
    Reviewed-on: https://chromium-review.googlesource.com/c/chromium/src/+/2437154Reviewed-by: default avatarJoe DeBlasio <jdeblasio@chromium.org>
    Commit-Queue: Dana Fried <dfried@chromium.org>
    Cr-Commit-Position: refs/heads/master@{#812551}
    a163a67b
generated_resources.grd 716 KB