From d3f583c9c5919aa61f10d476810d429d3767b5ae Mon Sep 17 00:00:00 2001 From: Chocobozzz Date: Tue, 31 Mar 2020 10:02:46 +0200 Subject: [PATCH] referer: do not send referrer when opening a link This change augments what was already done in 54e0f2de5b20 (PR with discussion at #3636). For documentation about the meaning of "noopener, noreferrer", see: https://developer.mozilla.org/en-US/docs/Web/API/Window/open#Window_functionality_features --- src/static/js/ace2_inner.js | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/src/static/js/ace2_inner.js b/src/static/js/ace2_inner.js index 597e8451a..64e49ce15 100644 --- a/src/static/js/ace2_inner.js +++ b/src/static/js/ace2_inner.js @@ -3374,8 +3374,7 @@ function Ace2Inner(){ { try { - var newWindow = window.open(n.href, '_blank'); - newWindow.focus(); + window.open(n.href, '_blank', 'noopener,noreferrer'); } catch (e) {