[pkg-horde] Bug#837150: Fix XSS with data:html links and form actions
Mathieu Parent
math.parent at gmail.com
Fri Sep 9 09:08:55 UTC 2016
Package: php-horde-text-filter
Version: 2.3.4-2
Severity: important
Tags: security sid jessie
Control: found -1 2.2.1-5
Hello,
In the recent bunch of updates to Horde, I found this:
https://github.com/horde/horde/commit/30d5506c20d26efbb9942fbdc6f981a0bd333b97
Will upload lastest version to sid shortly, and I plan to fix this in
jessie too.
Regards
--
Mathieu
More information about the pkg-horde-hackers
mailing list