From 6bf0a5cb5034a7e684dcc3500e841785237ce2dd Mon Sep 17 00:00:00 2001 From: Daniel Baumann Date: Sun, 7 Apr 2024 19:32:43 +0200 Subject: Adding upstream version 1:115.7.0. Signed-off-by: Daniel Baumann --- ...cess-control-preflight-request-must-not-contain-cookie.py | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 testing/web-platform/tests/xhr/resources/access-control-preflight-request-must-not-contain-cookie.py (limited to 'testing/web-platform/tests/xhr/resources/access-control-preflight-request-must-not-contain-cookie.py') diff --git a/testing/web-platform/tests/xhr/resources/access-control-preflight-request-must-not-contain-cookie.py b/testing/web-platform/tests/xhr/resources/access-control-preflight-request-must-not-contain-cookie.py new file mode 100644 index 0000000000..89a0451dd4 --- /dev/null +++ b/testing/web-platform/tests/xhr/resources/access-control-preflight-request-must-not-contain-cookie.py @@ -0,0 +1,12 @@ +def main(request, response): + if request.method == u"OPTIONS" and request.cookies.get(b"foo"): + response.status = 400 + else: + response.headers.set(b"Cache-Control", b"no-store") + response.headers.set(b"Access-Control-Allow-Origin", request.headers.get(b"origin")) + response.headers.set(b"Access-Control-Allow-Credentials", b"true") + response.headers.set(b"Access-Control-Allow-Headers", b"X-Proprietary-Header") + response.headers.set(b"Connection", b"close") + + if request.cookies.get(b"foo"): + response.content = request.cookies[b"foo"].value -- cgit v1.2.3