[pkg-horde] Bug#837150: Fix XSS with data:html links and form actions

Mathieu Parent math.parent at gmail.com
Fri Sep 9 09:08:55 UTC 2016


Package: php-horde-text-filter
Version: 2.3.4-2
Severity: important
Tags: security sid jessie
Control: found -1 2.2.1-5

Hello,

In the recent bunch of updates to Horde, I found this:

https://github.com/horde/horde/commit/30d5506c20d26efbb9942fbdc6f981a0bd333b97

Will upload lastest version to sid shortly, and I plan to fix this in
jessie too.

Regards

-- 
Mathieu



More information about the pkg-horde-hackers mailing list