svn propchange: r1692359 - svn:log

Previous Topic Next Topic
 
classic Classic list List threaded Threaded
1 message Options
Reply | Threaded
Open this post in threaded view
|

svn propchange: r1692359 - svn:log

jleroux@apache.org
Author: jleroux
Revision: 1692359
Modified property: svn:log

Modified: svn:log at Fri Apr  8 19:56:12 2016
------------------------------------------------------------------------------
--- svn:log (original)
+++ svn:log Fri Apr  8 19:56:12 2016
@@ -1 +1,2 @@
 The description attribute of the display-entity element is now escaped to prevent the risk of an XSS attack.
+[CVE-2015-3268] Stored Cross-Site Scripting Vulnerability affecting the description attribute of the display-entity element because it was not escaped.