diff --git a/src/extension/contentScript.ts b/src/extension/contentScript.ts index 20874eb..206be94 100644 --- a/src/extension/contentScript.ts +++ b/src/extension/contentScript.ts @@ -32,6 +32,11 @@ window.addEventListener( return; } + // Validate the origin of the message + if (event.origin !== window.location.origin) { + return; + } + if (!event.data.type || !event.data.eventId) { return; }