URL: https://s3.eu-west-1.amazonaws.com/hacker-secure-cookie-2.io/sop/lab2_embedding.html
Browser / Version: Firefox 78.0
Operating System: Linux
Tested Another Browser: No
Problem type: Something else
Description: Cross origin resource sharing is allowed even when "CORS Missing Allow Origin" is displayed"
Steps to Reproduce:
I could see the response object of the mentioned website in the network monitor although it says ""CORS Missing Allow Origin". Hope this could mean that I could access the resource of "s3.eu-central-1.amazonaws.com" from "https://s3.eu-west-1.amazonaws.com"
While I try to take the screenshot and made the tab into a new window, it's no more letting me seeing the resource. Know it's showing as transferred 'O bytes' but before I saw something like '512 B' or something(don't remember). The object was something like the web owners' twitter, Udemy account etc.
Browser Configuration
From webcompat.com with ❤️
URL: https://s3.eu-west-1.amazonaws.com/hacker-secure-cookie-2.io/sop/lab2_embedding.html
Browser / Version: Firefox 78.0
Operating System: Linux
Tested Another Browser: No
Problem type: Something else
Description: Cross origin resource sharing is allowed even when "CORS Missing Allow Origin" is displayed"
Steps to Reproduce:
I could see the response object of the mentioned website in the network monitor although it says ""CORS Missing Allow Origin". Hope this could mean that I could access the resource of "s3.eu-central-1.amazonaws.com" from "https://s3.eu-west-1.amazonaws.com"
While I try to take the screenshot and made the tab into a new window, it's no more letting me seeing the resource. Know it's showing as transferred 'O bytes' but before I saw something like '512 B' or something(don't remember). The object was something like the web owners' twitter, Udemy account etc.
Browser Configuration
From webcompat.com with ❤️