This is an archived snapshot of W3C's public bugzilla bug tracker, decommissioned in April 2019. Please see the home page for more details.

Back to bug 11835

Who When What Removed Added
robert 2011-01-21 19:14:00 UTC Priority P3 P2
CC robert
Summary Please do *not* require a same-origin restriction in user agents (as currently specified under "Security Considerations")! This cross-origin data leakage security issues have already been addressed by the CORS specification (http://www.w3.org/TR/cors/). EventSource must support cross-domain requests (ala CORS)
Severity normal major
jackalmage 2011-01-21 19:14:56 UTC CC jackalmage
annevk 2011-01-22 11:25:14 UTC CC annevk
ian 2011-02-16 08:22:36 UTC Status NEW ASSIGNED
CC ian
Summary EventSource must support cross-domain requests (ala CORS) [pending stable CORS] EventSource must support cross-domain requests (ala CORS)
art.barstow 2011-04-30 14:49:42 UTC CC art.barstow
louisremi 2011-06-14 16:28:09 UTC CC louisremi
glenn 2011-06-16 18:22:11 UTC CC glenn
ian 2011-06-17 19:58:03 UTC Status ASSIGNED RESOLVED
Resolution --- FIXED
Summary [pending stable CORS] EventSource must support cross-domain requests (ala CORS) EventSource must support cross-domain requests (ala CORS)
Ms2ger 2011-06-18 08:27:44 UTC CC Ms2ger

Back to bug 11835