tree: a4d73eb040eb01c43b5eecd83433b51b90c38924 [path history] [tgz]
  1. webaudio/
  2. abe-allow-credentials.php
  3. abe-allow-star.php
  4. abe-cookie-check.php
  5. abe.png
  6. alert-fail.js
  7. blank.html
  8. canvas-cors-subtest.html
  9. captions-with-access-control-headers.php
  10. captions.vtt
  11. client-redir.html
  12. compass.jpg
  13. conditional-cors.php
  14. cors-font.php
  15. cors-hello.php
  16. cors-redir.php
  17. cors-redirect.php
  18. cors-script.php
  19. cors-style.php
  20. create-filesystem-file.html
  21. credentials-in-referer-frame.php
  22. credentials-in-referer.php
  23. cross-frame-access-frameelement-from-iframe.html
  24. cross-frame-access-get-custom-property-cached-iframe.html
  25. cross-frame-access.js
  26. cross-frame-iframe-callback-explicit-domain-ALLOW.html
  27. cross-frame-iframe-callback-explicit-domain-DENY.html
  28. cross-frame-iframe-for-delete-test.html
  29. cross-frame-iframe-for-document-direct-test-victim.html
  30. cross-frame-iframe-for-document-direct-test.html
  31. cross-frame-iframe-for-DOMImplementation-test.html
  32. cross-frame-iframe-for-enumeration-test.html
  33. cross-frame-iframe-for-get-override-test.html
  34. cross-frame-iframe-for-get-test.html
  35. cross-frame-iframe-for-location-get-override-test.html
  36. cross-frame-iframe-for-location-get-test.html
  37. cross-frame-iframe-for-location-put-test.html
  38. cross-frame-iframe-for-object-getPrototypeOf-test.html
  39. cross-frame-iframe-for-object-prototype-test.html
  40. cross-frame-iframe-for-parent-isolated-world.html
  41. cross-frame-iframe-for-put-test.html
  42. cross-frame-iframe-with-explicit-domain-set.html
  43. cross-frame-iframe.html
  44. cross-frame-location-prototype-iframe.html
  45. cross-frame-mouse-source-capabilities.html
  46. cross-origin-getMatchedCSSRules-frame.html
  47. cross-origin-iframe-for-appcache-allowed.html
  48. cross-origin-iframe-for-appcache.html
  49. cross-origin-iframe-for-indexeddb.html
  50. cross-origin-iframe-for-local-storage.html
  51. cross-origin-iframe-for-session-storage.html
  52. cross-origin-iframe-for-shared-worker.html
  53. cross-origin-iframe-for-websql.html
  54. cross-origin-iframe-for-worker-indexeddb.html
  55. cross-origin-script.txt
  56. cross-origin-xsl-redirect.xml
  57. cross-origin-xsl.xml
  58. css-import.css
  59. cssStyle.css
  60. document-domain-iframe-for-local-storage.html
  61. drag-drop-allowed.html
  62. drag-drop.html
  63. echo-referrer-header.php
  64. empty-svg.php
  65. empty.html
  66. escape-form-data-field-names.cgi
  67. fail.html
  68. feed.html
  69. feed.xml
  70. file-redirect-target.html
  71. forbidden-stylesheet.xsl
  72. foreign-domain-iframe-for-selection-test.html
  73. frame-for-parent-name.html
  74. frame-loading-via-document-write.js
  75. green-background-allow-credentials-import.php
  76. green-background-allow-credentials.php
  77. green-background-allow-star-import.php
  78. green-background-allow-star.php
  79. green-background-import-anonymous.css
  80. green-background-import-credentials.css
  81. green-background.css
  82. green-if-cors-anonymous.php
  83. green-if-cors-credentialed.php
  84. green-if-no-referrer-css.php
  85. green-if-no-referrer.php
  86. green-if-referrer-is-full-url-origin-when-crossorigin.php
  87. green-if-referrer-is-full-url.php
  88. green-if-referrer-is-origin.php
  89. green250x50.png
  90. has-custom-property.html
  91. has-window-events.html
  92. hsts.php
  93. iframe-crossorigin-script.html
  94. iframe-for-naked-global-object.html
  95. iframe-for-storage-blocking-changed-local-storage.html
  96. iframe-for-storage-blocking-changed-shared-worker.html
  97. iframe-for-storage-blocking-changed-websql.html
  98. iframe-for-synchronous-form.html
  99. iframe-invalid-domain-change.html
  100. iframe-no-src.html
  101. image-access-control.php
  102. image-with-css-import.svg
  103. image-wrapper-with-no-image.svg
  104. image-wrapper.svg
  105. img-basic-auth.php
  106. innocent-victim-with-iframe.html
  107. innocent-victim.html
  108. libwrapjs.js
  109. link-crossorigin-common.js
  110. localhost-accesssor.html
  111. localPage.html
  112. localScript.js
  113. location-prototype-overwrite.html
  114. manifest-for-appcache-allowed.manifest
  115. manifest-for-appcache-blocked.manifest
  116. manifest-for-appcache.manifest
  117. no-custom-property.html
  118. no-referrer-frame.php
  119. no-referrer.php
  120. object-literals-cross-origin.html
  121. object-literals-same-origin.html
  122. onerror-iframe.html
  123. open-window.html
  124. opened-document-security-origin-resets-on-navigation-frame.html
  125. pass-if-no-referrer.php
  126. post-done-to-opener.html
  127. post-done.html
  128. post-location-to-opener.html
  129. post-origin-to-opener.html
  130. post-origin-to-parent.html
  131. post-referrer-on-reload.html
  132. postmessage-document-origin.html
  133. postmessage-post.php
  134. promise-access-control.php
  135. red-background.css
  136. red200x100.png
  137. redir.php
  138. referrer-attr-anchor-noreferrer-target.html
  139. referrer-attr-anchor-target.html
  140. referrer-attr-area-unsafe-url-target.html
  141. referrer-attr-iframe-target.html
  142. referrer-on-client-redirect.html
  143. referrer-policy-conflicting-policies.html
  144. referrer-policy-log.php
  145. referrer-policy-postmessage.php
  146. referrer-policy-redirect-link.html
  147. referrer-policy-redirect.html
  148. referrer-policy-script.php
  149. referrer-policy-srcdoc.php
  150. referrer-policy-start-crossorigin.html
  151. referrer-policy-start.html
  152. rel-noreferrer.html
  153. same-origin-iframe-for-appcache-blocked.html
  154. sandboxed-iframe-document-cookie-read-denied.html
  155. sandboxed-iframe-form-top.html
  156. sandboxed-iframe-modify-self.html
  157. sandboxed-iframe-origin-add-step1.html
  158. sandboxed-iframe-origin-add-step2.html
  159. sandboxed-iframe-origin-remove-step1.html
  160. sandboxed-iframe-origin-remove-step2.html
  161. script-allow-credentials.php
  162. script-allow-star.php
  163. send-mime-types.php
  164. set-cookie.php
  165. shared-worker.js
  166. showRefererImage.php
  167. success.html
  168. target.xml
  169. video-cross-origin-allow.php
  170. worker-for-indexeddb.js
  171. worker-for-websql.js
  172. xorigincss1.css
  173. xorigincss1.html
  174. xorigincss2.css
  175. xorigincss2.html
  176. xorigincss3.html
  177. xorigincss4.html
  178. xorigincss5.html
  179. xorigincss6.html
  180. xorigincss7.html
  181. xsl-using-document-redirect.xsl
  182. xsl-using-document.xsl
  183. xsl-using-external-entity-redirect.xsl
  184. xsl-using-external-entity.xsl
  185. xss-DENIED-assign-location-hash-attacker.html
  186. xss-DENIED-assign-location-host-attacker.html
  187. xss-DENIED-assign-location-host-failure.html
  188. xss-DENIED-assign-location-hostname-attacker.html
  189. xss-DENIED-assign-location-hostname-failure.html
  190. xss-DENIED-assign-location-nonstandardProperty-attacker.html
  191. xss-DENIED-assign-location-pathname-attacker.html
  192. xss-DENIED-assign-location-pathname-failure.html
  193. xss-DENIED-assign-location-protocol-attacker.html
  194. xss-DENIED-assign-location-protocol-failure.html
  195. xss-DENIED-assign-location-reload-attacker.html
  196. xss-DENIED-assign-location-search-attacker.html
  197. xss-DENIED-defineProperty-attacker.html
  198. xss-DENIED-sandboxed-iframe-attacker.html
  199. xss-DENIED-window-open-parent-attacker.html
  200. xss-eval2.html
  201. xss-eval3.html