[wp-trac] [WordPress Trac] #46301: Customizer iframe warning

WordPress Trac noreply at wordpress.org
Thu Feb 21 22:46:34 UTC 2019


#46301: Customizer iframe warning
--------------------------+-----------------------------
 Reporter:  mensmaximus   |      Owner:  (none)
     Type:  defect (bug)  |     Status:  new
 Priority:  normal        |  Milestone:  Awaiting Review
Component:  Customize     |    Version:  trunk
 Severity:  minor         |   Keywords:
  Focuses:                |
--------------------------+-----------------------------
 The preview in customizer (customize.php) causes a warning message in the
 browser console:

 An iframe which has both allow-scripts and allow-same-origin for its
 sandbox attribute can remove its sandboxing.
 Content Security Policy: Ignoring ‘x-frame-options’ because of ‘frame-
 ancestors’ directive.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/46301>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list