Skip to content

Incorrect assertion in Obtain the deprecated serialization of violation #788

@Lubrsi

Description

@Lubrsi

Step 3 states:

Assert: If body["blocked-uri"] is not "inline", then body["sample"] is the empty string.

However, the eval, trusted-types-policy and trusted-types-sink resources can also provide a sample.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions