angler-fishThe Vulnerability History Project

Kill renderer if it changes the main frame's origin on subframe commits.

      This is hopefully safe after the fix for 597322.  It's a useful second
line of defense against URL spoofs.

BUG=486916, 597322
TEST=No NC_AUTO_SUBFRAME kills
CQ_INCLUDE_TRYBOTS=tryserver.chromium.linux:linux_site_isolation

Review-Url: https://codereview.chromium.org/1960983002
Cr-Commit-Position: refs/heads/master@{#392666}
    
commit fb6eeb6dde866fbe9b48b62311eb6cc48771fc70
+5 -2
expand_less