Overview
Request 76669 superseded
- Update to 1.5.2-20110719
* fixes CVE-2011-2023 "XSS problem with unsanitized style tags"
* fixes CVE-2011-2753/CVE-2010-4555 "XSS holes in generic options
inputs, XSS hole in the SquirrelSpell plugin, added anti-CSRF
protection to the empty trash feature"
* fixes CVE-2010-4554 "Add clickjacking protection"
- Avoid packaging certain files twice
- Created by jengelh
- In state superseded
- Superseded by 77365
- Open review for factory-auto
Request History
jengelh created request
- Update to 1.5.2-20110719
* fixes CVE-2011-2023 "XSS problem with unsanitized style tags"
* fixes CVE-2011-2753/CVE-2010-4555 "XSS holes in generic options
inputs, XSS hole in the SquirrelSpell plugin, added anti-CSRF
protection to the empty trash feature"
* fixes CVE-2010-4554 "Add clickjacking protection"
- Avoid packaging certain files twice
coolo declined request
it requires php-mhash, which is not in O:F
supersede declined request with a followup request
licensedigger accepted review
{"approve": "license and version number unchanged: 1.5.2"}