April 7, 2008
Flash Hardens, Some Sites May Shatter
Skinny: upcoming Flash Player update may break sites that use Flash to talk
cross-domain, via sockets, or to the hosting html, especially via javascript:
. Also affected are Flash apps that use custom headers. Accommodation may require the inclusion of the allowScriptAccess object/embed parameter, the creation and hosting of socket security policy files, or recoding of your content.
The Security update is expected to be released this month, so the time for retrofitting and testing potentially affected content grows short.
Full details in the Adobe Dev Center article Preparing for the Flash Player 9 April 2008 Security Update.