From fdfee4b34c818c410dd586e86ab1dad99c2a5f4c Mon Sep 17 00:00:00 2001 From: Mark Sapiro Date: Sat, 1 Aug 2009 12:22:34 -0700 Subject: XSS protection in the web interface went too far in escaping HTML entities. Fixed. --- NEWS | 3 +++ 1 file changed, 3 insertions(+) (limited to 'NEWS') diff --git a/NEWS b/NEWS index 477a81f0..47bc5f73 100644 --- a/NEWS +++ b/NEWS @@ -8,6 +8,9 @@ Here is a history of user visible changes to Mailman. Bug Fixes and other patches + - XSS protection in the web interface went too far in escaping HTML + entities. Fixed. + - Removed or anonymized additional headers in posts to anonymous lists. - Fixed a bug that could cause incorrect threading of replies to archived -- cgit v1.2.3