[wp-trac] [WordPress Trac] #37941: add rel="noopener noreferrer" to any target="_blank"
WordPress Trac
noreply at wordpress.org
Wed Mar 20 19:50:57 UTC 2019
#37941: add rel="noopener noreferrer" to any target="_blank"
--------------------------------------+-------------------------------
Reporter: Presskopp | Owner: nicolapeluchetti
Type: enhancement | Status: assigned
Priority: normal | Milestone: Awaiting Review
Component: Security | Version:
Severity: normal | Resolution:
Keywords: good-first-bug has-patch | Focuses:
--------------------------------------+-------------------------------
Comment (by audrasjb):
Replying to [comment:23 afercia]:
> As mentioned on #46421, I'd suggest to investigate on the actual
usefulness of noreferrer:
> - it was used to support old browsers that had no support for noopener,
see https://mathiasbynens.github.io/rel-noopener/ under "Recommendations"
for browsers details
> - seems redundant after [41741] see #42036
As mentionned on #43280 I think both of the rel attributes should be
added, in order to
keep some consistency with
https://developer.wordpress.org/reference/functions/wp_targeted_link_rel/
If we want to remove noreferrer, I believe we should remove it from that
function ;-)
--
Ticket URL: <https://core.trac.wordpress.org/ticket/37941#comment:24>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform
More information about the wp-trac
mailing list