Review of patch to support iframe's allow-popups-to-escape-sandbox?
Last month I uploaded a patch to support the
allow-popups-to-escape-sandbox flag for iframe's sandbox attribute .
As suggested by its name, it allows popups to escape sandboxing. I tried
to cc' people or find a reviewer on irc, but was not really successful
so far :-( Can anyone please take a look?
It seems that a bug with security involvement was fixed last year:
Basically popus were never sandboxed . I see that the
allow-popups-to-escape-sandbox flag changes that behavior when it is
explicitly requested by the page's author, so I guess some careful
review (from Apple?) might be required here.