Hi,

I've got a question regarding the unsafeWindow. I just want to access one variable, a the Greasemonkey wiki isn't really specific about that. It's basically just saying "unsafeWindow" is bad, period. I've considered using a workaround from the coding tips. But the script provided there is said to be unsafe, too in the discussion and it's a complex script with messages and callbacks and listeners... I don't trust anything I don't understand if anybody else who obviously knows something about it says it's highly unsafe. Arantius (the author) did a great job simply ignoring that issue/concern so far (since September 2010). -_-*

But I honestly wonder if there's any possibility to hijack the GM sandbox if I only do "var lang = unsafeWindow.lang.toString();". I don't see any way how that variable value could hijack the sandbox even if it was referring a function and not the expected string...

Am I forgetting about something?

Chris

--
You received this message because you are subscribed to the Google Groups 
"greasemonkey-users" group.
To post to this group, send email to [email protected].
To unsubscribe from this group, send email to 
[email protected].
For more options, visit this group at 
http://groups.google.com/group/greasemonkey-users?hl=en.

Reply via email to