summaryrefslogtreecommitdiff
path: root/src/xss/sanitizeName.js
diff options
context:
space:
mode:
authorhackademix2018-07-01 01:01:23 +0200
committerhackademix2018-07-01 01:01:23 +0200
commiteceae7187a6f0e9510bc1165f6977256b87f490f (patch)
treed943f1ec73c09efa70954dcedb55eac82a726148 /src/xss/sanitizeName.js
downloadnoscript-eceae7187a6f0e9510bc1165f6977256b87f490f.tar.gz
noscript-eceae7187a6f0e9510bc1165f6977256b87f490f.tar.xz
noscript-eceae7187a6f0e9510bc1165f6977256b87f490f.zip
Initial commit starting at version 10.1.8.3rc4.
Diffstat (limited to 'src/xss/sanitizeName.js')
-rw-r--r--src/xss/sanitizeName.js4
1 files changed, 4 insertions, 0 deletions
diff --git a/src/xss/sanitizeName.js b/src/xss/sanitizeName.js
new file mode 100644
index 0000000..22185f4
--- /dev/null
+++ b/src/xss/sanitizeName.js
@@ -0,0 +1,4 @@
+if (/[<"'\`(=:]/.test(window.name)) {
+ console.log(`NoScript XSS filter sanitizing suspicious window.name "%s" on %s`, window.name, document.URL);
+ window.name = "";
+}