YUI3 cookie JS is being read over http on +translate pages

Bug #338216 reported by Данило Шеган
2
Affects Status Importance Assigned to Milestone
Launchpad itself
Fix Released
High
Данило Шеган

Bug Description

New link-to-style guide JS uses cookies to "persistently" hide links, but that's being read directly from yahoo servers instead of from launchpad, causing security problems.

Changed in rosetta:
importance: Undecided → High
status: New → Triaged
Revision history for this message
Данило Шеган (danilo) wrote :
Revision history for this message
Данило Шеган (danilo) wrote :

This seems to have been fixed by someone already. Need to QA, though.

Changed in rosetta:
assignee: nobody → danilo
milestone: none → 2.2.3
status: Triaged → Fix Committed
Changed in rosetta:
status: Fix Committed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.