Remove wrapper object reference before loading iframe to enhance security
This commit is contained in:
parent
c438b9f8a5
commit
fd56ddaa54
2 changed files with 8 additions and 2 deletions
|
@ -398,6 +398,12 @@ class Wrapper
|
|||
@log "Setting title to", window.document.title
|
||||
|
||||
|
||||
onWrapperLoad: =>
|
||||
# Cleanup secret variables
|
||||
delete window.wrapper
|
||||
delete window.wrapper_key
|
||||
$("#script_init").remove()
|
||||
|
||||
# Send message to innerframe
|
||||
sendInner: (message) ->
|
||||
@inner.postMessage(message, '*')
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue