On Wed, Apr 10, 2019 at 10:51:33AM -0400, Chris Lamb wrote: > retitle 926700 cacti: CVE-2019-11025 - XSS in utilities.php > thanks > > Hi all, > > I've attached a patch that I intend to upload to jessie LTS. May I > also prepare an update for stretch based on this?
I doubt this really warrants a DSA, but could be fixed in the forthcoming stable update (or we postpone it for the next more severe Cacti issue) Cheers, Moritz