Gaping Security Hole
Gaping Security Hole
Posted Apr 22, 2026 8:14 UTC (Wed) by cortana (subscriber, #24596)In reply to: Gaping Security Hole by zwol
Parent article: Firefox 150 released
If my quick reading of the spec is correct, it seems that browsers will assume that private IP address space is 'local' and public space is 'public'. There are networks where this does not hold. I hope browsers will allow the configuration of a list of CIDR ranges to be considered 'local' in addition to the defaults.
