NoScript Security Suite verziótörténet – 25 verzió
NoScript Security Suiteszerző: Giorgio Maone
Legyen óvatos a régi verziókkal! Ezek a verziók csak tesztelési és hivatkozási célokra jelennek meg.
Mindig használja a kiegészítő legfrissebb verzióját.
Legfrissebb verzió
Verzió: 11.0.9
Kiadva: 2019. nov 19. – 558,61 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 11.0.9
============================================================
x [Chromium] Prevent duplicated MSE placeholders (e.g. on
Youtube)
x Fixed external scripts included in HEAD of file:// pages
failing (issue #115)
x [XSS] Updated HTML 5 events inventory
x Best effort to make media placeholders visible and
clickable
x Placeholders for MSE on Chromium too
x Use invalid IP rather than domain name to prevent offline
status from breaking sync messaging in Chromium
x Removed empty exportFunction() Chromium shim
x Updated TLDsA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Korábbi verziók
Verzió: 11.0.8
Kiadva: 2019. nov 7. – 557,58 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbx [L10n] Updated da, ja, lt, mk, nl
x Fixed onionSecure setting persistence issue (Tor ticket
#32362)
x Fixed CSP DOM injection breaking XML documents renderingA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 11.0.7
Kiadva: 2019. nov 4. – 539,69 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 11.0.7
============================================================
x Use fragments to reinsert and run previously blocked
scripts
x Fetch policies asynchronously for about: and javascript:
URLs
x Remove loop around XHRA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 11.0.6
Kiadva: 2019. nov 1. – 539,63 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 11.0.6
============================================================
x Compute the correct origin for the policy to be fetched
from about:blank and javascript: URLs
x Work-around for Youtube video elements positioned
off-display at replacement time
x Version numbers for Chromium dev builds compatible with
Chromestore requirements
x Script blocking before policy is fetched only for
synchronous loads
x Make tests not to run automatically on dev mode startup
anymoreA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 11.0.4
Kiadva: 2019. okt 27. – 539,09 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 11.0.4
============================================================
x [Tor] Treat .onion sites whose protocol is HTTP as if it
was HTTPS
x [Mobile] Blocked scripts count displayed in the browser
action menu item
x Consolidated missing endpoint error detection in Messages
x More compatible Messages abstraction
x Progressive count of debug messages to better trace
asynchronous execution
x [XSS] Fixed false positive (property assignment)
x Fixed typo causing initializing promise not being cached
x Avoid unnecessary page reloads on extension updates
x Fixed undefined variable error when in debugging mode
x [Tor] Display .onion sites as "secure" in the UI (tickets
#27313 and #27307)
x Support for splitting sync storage items into chunks, to
allow synchronization of big policies across devices
x IPv4 subnet shortcut matching
x Fallback to local storage for any item exceeding limits
(fixes persistence problems on Chromium)
x Alternate version numbering for Chromium pre-releases
x Simplified, less noisy and more resilient Messages
abstraction implementation (thanks barbaz for reporting)
x Handle edge-case policy retrieval for file:// pages loaded
by session restore on startup and alike
x Improved Chromium development-build workflow
x Fix CSP violation reporting management of "fake"
blocked-uri like "eval"
x Recursive webgl context monkeypatching across same origin
windows (thanks skriptimaahinen for concept and patch)
x Replaced cookie-based hacks with synchronous messaging
(currently shimmed) to retrieve fallback and
per-tab restriction policies
x Work-around for Chromium not supporting frameAncestors
in webRequest
x [L10n] Updated Transifex-managed ca, da, it, nl, ru, sv_SE
x [XSS] Updated HTML5 events
x Updated TLDs
x Fixed "Cascade top document restrictions" option not always
applied to embedded elements (thanks barbaz for reporting)
x Removed XSS prompt for timeoutsA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 11.0.3
Kiadva: 2019. aug 19. – 535,65 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 11.0.3
=============================================================
x [Tor] Work-around for prompts being huge when
resistFingerprinting is enabled
x [XSS] Fixed false positives due to overzealous HTML
attribute checking
x [XSS] Enabled InjectionChecker logging when debugging mode
is on
x Work-around for browser.i18n.getMessage() API in content
scripts giving away browser's real locale (Tor issue #31287)
x Updated TLDs
x [L10n] Updated Transifex-managed he, is, nb, ru, sq, zh_TWA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 11.0.2
Kiadva: 2019. júl 25. – 535,21 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 11.0.2
=============================================================
+ Restored "classic" pasted HTML sanitization feature, Now
triggered by drag'n'drop too (thanks barbaz for patch)
x Fixed bug in browser type detection by content scripts (
thanks barbaz)
+ Added "Collapse blocked objects" option in Blocked Objects
prompt
x Fixed corner case when application/* content types should
match "media" rather than "object" (thanks skriptimaahinen
for reporting)
x Replacement clicks are now intercepted even if a content
placeholder is obstructed by an overlay
x More graceful handling of chrome: origins (thanks
skriptimaahinen for reporting)
x CSP building optimizations
x Updated TLDs.
x [L10n] Updated Transifex-managed locales br, de, it, ms,
nl, ru, tr, nb, sv_SE and zh_CNA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 11.0
Kiadva: 2019. jún 24. – 533,93 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 11.0
=============================================================
x [XSS] Fixed false positives with parameters named "src"
x Static click-to-play placeholders
+ [L10n] New da, is, pl, sq, zh_TW Transifex-managed locales
x [L10n] Updated sv_SE Transifex-managed localeA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.6.3
Kiadva: 2019. jún 15. – 506,44 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.6.3
=============================================================
x Multiple fixes in embeddings replacement (thanks barbaz
for reporting)
x Fixed [Import] settings button on Android
x [XSS] JSON reduction optimizations
x [XSS] XSS checks performance improvements play nicer with
resistFingerprinting
x [XSS] Fully asynchronous InjectionChecker, prevents freezes
on heavy payloads
x Skip page autoreloads on transitions between temporary and
permanent presets of the same kind
x Updated TLDsA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.6.2
Kiadva: 2019. máj 22. – 504,48 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.6.2
=============================================================
x Removed work-around for https://bugzil.la/1532530 (now
fixed and backported to the Tor Browser too)
x Fixed media.mediasource.enabled breakage (thanks
skriptimaahinen for patch)
x Reference internal pages as absolute URLs for Chromium
compatibility
x Updated TLDs
x [Locale] Updated Transifex-managed locales (es, ms, tr)A forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.6.1
Kiadva: 2019. ápr 10. – 507,54 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.6.1
=============================================================
x Make RequestGuard's header processing synchronous as needed
x Fixed inconsistencies handling browser-internal URLs
x Fixed resetting options works just once per session
(defaults reference current settings) - issue #69
x [Locale] Updated Transifex-managed locales (de, fr, it, tr,
nl)A forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.6
Kiadva: 2019. ápr 7. – 507,83 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.6
=============================================================
x Limit wrappedJSObject usages to compatible browsers
x [Chromium] Merged chromium branch (unified code base)
x [Locale] Updated Transifex-managed locales
x Updated TLDsA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.2.5
Kiadva: 2019. márc 24. – 490,81 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.2.5
=============================================================
x [XSS] Improved detection of privileged origins (fixes an
about:tor to DuckDuckGo false positive)A forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.2.4
Kiadva: 2019. márc 20. – 490,77 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.2.4
=============================================================
x Improved prompts layout (thanks Ton for suggestion)
x Improved unscanned POST blockingA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.2.3
Kiadva: 2019. márc 19. – 490,72 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.2.3
=============================================================
x [l10n] Updated Transifex-managed locales
x Fixed POST searches from the url bar causing XSS warnings
x Fixed popup top buttons not visible in high contrast
appearance mode (thanks pjaworski for reporting)
x Optimized popup layout initializationA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.2.2
Kiadva: 2019. márc 17. – 490,64 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.2.2
=============================================================
x [L10n] Updated Transifex-managed locales
+ Cascading top document's restrictions to subdocuments is now
an option in the General section and defaults to true on
the Tor Browser only
+ "Scan uploads for potential cross-site attacks" and "Ask
confirmation for cross-site POST requests which could not
be scanned" options: in Tor Browser default false and true,
respectively, as a work-around for mozbug 1532530
+ [Tor] "Override Tor Browser Security Level preset" option
+ [Tor] Selective handling of Tor Browser specific settings
x Updated TLDs
x [XSS] Updated event names
x Safer cookie-less check for unrestricted tabs from subdocs
x [Build] Easier version bumps to next rc (build.sh bump rcX)
x Fixed unrestricted tabs not affecting about:blank subframes
(issue #48, thanks musonius for reporting)
x [XSS] Updated known HTML events lists
+ [Locale] Added sv_SE (by Jonatan Nyberg)A forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.2.1
Kiadva: 2018. dec 23. – 475,29 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.2.1
=============================================================
x Cascade top document's restrictions to subframes (Tor
issue #28873)
x Fixed restored media element from placeholder not loading
previously blocked content automatically
x Fixed placeholders missing for some blocked embeddings
(Tor ticket #28720)A forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.2.0
Kiadva: 2018. nov 25. – 475,11 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.2.0
============================================================
x [L10n] Updated fr, he
x Allow origin-less fetch for extensions (issue #41)
x Fixed meta refresh inside NOSCRIPT emulation breaking
Firefox's built-in refresh blocking
x Fixed issue #35 "tabId is not defined" on startup
x Darker red badge background to ensure text is kept white
across browsers
</pre>A forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.1.9.9
Kiadva: 2018. okt 16. – 475,12 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.1.9.9
=============================================================
x Prevention of potential race condition in the new per-tab
configuration cookie-based hack
x Better cross-platfrom build script compatibility
x Per-tab configuration cookie-based hack, leaves window.name
alone
x Various build scripts fixesA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.1.9.8
Kiadva: 2018. okt 6. – 475,12 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.1.9.8
=============================================================
x Fixed preset customization UI showing inherited DEFAULT
permissions if a protocol-level preset exists
x Simplified CSP HTTP header injection, avoiding report-to
until actually supported by browsers
x [L10n] Updated ru (thanks fatboy)
+ [Tor] Better UX for overriding protocol-level permissions
+ [Build] Option to force TLD updates
+ [L10n] Updated (es, ru) and new (el, he, ms, nb) locales
from OTF's Localization Lab Transifex project
+ [L10n] no_BO translation by comradekingu
+ FTP directory UI emulation on script-disabled domains
x Include ftp:// URLs in non-secure domain matching (thanks
Rassilon for RFE)A forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.1.9.6
Kiadva: 2018. szept 14. – 446,58 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.1.9.6
=============================================================
x [TB] Gracefully handle legacy external message recipients
x [XSS] Updated known HTML5 events
x Better IPV6 support
x UI support for protocol-only entriesA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.1.9.5
Kiadva: 2018. szept 9. – 446,26 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.1.9.5
=============================================================
x Fix for various content script timing related issues
(thanks therube for reporting)A forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.1.9.4
Kiadva: 2018. szept 9. – 446,37 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.1.9.4
=============================================================
x Prevent total breakages when policies accidentally map
to invalid match patterns
x Internal messaging dispatch better coping with multiple
option windows
x Avoid multiple CSP DOM insertionsA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.1.9.3
Kiadva: 2018. szept 9. – 446,25 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.1.9.3
=============================================================
x Fixed message handling regression breaking embedders and
causing potential internal message loopsA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve
Verzió: 10.1.9.2
Kiadva: 2018. szept 8. – 446,12 kBEzekkel működik: firefox 59.0 vagy újabb, android 59.0 vagy újabbv 10.1.9.2
=============================================================
x More efficient window.name-based tab-scoped permissions
persistence
x Fixed URL parsing bugs
x Fixed bug in requestKey generation
x [Build] Enhanced TLD data update subsystem
+ [UI] CUSTOM presets gets initialized with currently applied
preset, including temporary/permanent status
x Improved internal message dispatching, avoiding potential
race conditions
+ [L10n] Transifex integration
x Work-around for DOM-injected CSP not being honored when
appended to the root element, rather than HEAD
+ Transparent support for FQDNs
x Better file: protocol support
x Full-page placeholders for media/plugin documentsA forráskód GNU General Public License, version 2.0 licenc alatt közzétéve