diff options
author | adrianp <adrianp@pkgsrc.org> | 2008-05-06 19:36:39 +0000 |
---|---|---|
committer | adrianp <adrianp@pkgsrc.org> | 2008-05-06 19:36:39 +0000 |
commit | 46790cfb0bb9ebe35f8e0b561396fe0531ec2122 (patch) | |
tree | 60e075dda9a77e43a6e69db73f52d8f11b8a0a81 /wm/evilwm | |
parent | 5eefa6e4cc78f01780dd2a2ad59ddb214707c749 (diff) | |
download | pkgsrc-46790cfb0bb9ebe35f8e0b561396fe0531ec2122.tar.gz |
2.22.4
Class: Cross-Site Scripting
Versions: 2.17.2 and higher
Description: When using the "Format for Printing" view of a bug (or
the "Long Format" of a bug list, which is the same thing),
there was a cross-site scripting hole--arbitrary text
from a particular URL parameter could be injected into the
page without filtering.
Diffstat (limited to 'wm/evilwm')
0 files changed, 0 insertions, 0 deletions