|
Author: jleroux
Revision: 1692358
Modified property: svn:log
Modified: svn:log at Fri Apr 8 19:55:37 2016
------------------------------------------------------------------------------
--- svn:log (original)
+++ svn:log Fri Apr 8 19:55:37 2016
@@ -3,6 +3,6 @@
r1692357 | jleroux | 2015-07-23 10:36:36 +0200 (jeu. 23 juil. 2015) | 2 lignes
The description attribute of the display-entity element is now escaped to prevent the risk of an XSS attack.
+[CVE-2015-3268] Stored Cross-Site Scripting Vulnerability affecting the description attribute of the display-entity element because it was not escaped.
------------------------------------------------------------------------
-
|