Bug#504608: XSS in bugs.debian.org

2008-11-24 Thread Adeodato Simó
clone 504608 -1 retitle -1 XSS in buildd.debian.org reassign -1 buildd.debian.org thanks > * Gerfried Fuchs [Wed, 05 Nov 2008 17:25:55 +0100]: > > Hmm, I'm not too sure if there is a (pseudo) package that this bug > > could get cloned to for that, best thing propably would be to open a > > ticke

Bug#504608: XSS in bugs.debian.org

2008-11-24 Thread Adeodato Simó
> Am Samstag, den 01.11.2008, 17:47 +0100 schrieb Moritz Naumann: > > I know it's not your domain, but I'd like to point out that another XSS > > and some other issue (which may range from info disclosure to DoS) has > > been around on buildd.debian.org for a long time, first reported in Aug > > 2

Bug#504608: XSS in bugs.debian.org

2008-11-05 Thread Gerfried Fuchs
Package: debbugs Version: n/a Severity: important Tags: security Hi! Am Samstag, den 01.11.2008, 17:47 +0100 schrieb Moritz Naumann: > I just realized there's a cross site scripting issue on bugs.debian.org, > which you migth like to fix. > > http://bugs.debian.org/cgi-bin/pkgreport.cgi