from Hacker News

Firefox Local File Disclosure and Same Origin Policy Bypass

by dahjelle on 8/2/16, 3:06 PM with 2 comments

  • by nathancahill on 8/2/16, 3:39 PM

    It's a Same Origin Policy bypass the same way asking a webmaster to upload a copy of my HTML file to their domain is a same origin policy bypass.
  • by 0x0 on 8/2/16, 4:03 PM

    That's one way to use css to totally freeze up iOS MobileSafari...