diff options
Diffstat (limited to 'NEWS')
-rw-r--r-- | NEWS | 8 |
1 files changed, 4 insertions, 4 deletions
@@ -8,11 +8,11 @@ Here is a history of user visible changes to Mailman. Security - - The 2.1.9 fixes for CVE-2006-3636 have been enhanced. In particular, - many potential cross-site scripting attacks have are now detected in + - The 2.1.9 fixes for CVE-2006-3636 were not complete. In particular, + some potential cross-site scripting attacks were not detected in editing templates and updating the list's info attribute via the web - admin interface. Thanks again to Moritz Naumann for assistance with - this. + admin interface. This has been assigned CVE-2008-0564 and has been + fixed. Thanks again to Moritz Naumann for assistance with this. New Features |