canmove, Confirmed users
1,220
edits
Ptheriault (talk | contribs) |
Ptheriault (talk | contribs) |
||
Line 40: | Line 40: | ||
</code> | </code> | ||
The name or icon parameters are not sanitized at all, so there is a spoofing risk here. | The name or icon parameters are not sanitized at all, so there is a spoofing risk here, however it appears the a user supplied icon is wrapped in a white circle border, so it is clear that its a bookmark and not an app. | ||
* | * I am currently seeing weird issues/crashing when supplying an icon via a data URI. Can't reproduce reliably though. | ||
====Web Activity Usage ==== | ====Web Activity Usage ==== |