Chrome may allow construction of PaymentRequest JavaScript object on iOS in an insecure context. |
||
Issue descriptionChrome allows construction of PaymentRequest JavaScript object on iOS in an insecure context (e.g., http instead of https), if constructed before Chrome has had the chance to send the "context security" bit to the JavaScript shim.
,
Aug 28 2017
|
||
►
Sign in to add a comment |
||
Comment 1 by bugdroid1@chromium.org
, Aug 22 2017