Bug#743252: Multiples XSS in index.php

2014-04-02 Thread Emilien Klein
I have been granted upload rights for Shaarli by Georges, and have uploaded the package to ftp-master. Should anything in particular be done (e.g. pushing directly to testing?) or does this follow the regular upload process? +Emilien -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists

Bug#743252: Multiples XSS in index.php

2014-04-01 Thread Emilien Klein
Hi David, Salvatore and Georges, 2014-04-01 20:24 GMT+02:00 Salvatore Bonaccorso : > Hi, > > On Mon, Mar 31, 2014 at 06:38:55PM -0400, David Prévot wrote: >> Package: shaarli >> Version: 0.0.41~beta~dfsg2-3 >> Severity: grave >> Tags: security patch upstream >> Control: forward -1 https://github.c

Bug#743252: Multiples XSS in index.php

2014-04-01 Thread Salvatore Bonaccorso
Hi, On Mon, Mar 31, 2014 at 06:38:55PM -0400, David Prévot wrote: > Package: shaarli > Version: 0.0.41~beta~dfsg2-3 > Severity: grave > Tags: security patch upstream > Control: forward -1 https://github.com/sebsauvage/Shaarli/issues/134 > Control: tag -1 fixed-upstream > > Hi, > > A security iss

Bug#743252: Multiples XSS in index.php

2014-03-31 Thread David Prévot
Package: shaarli Version: 0.0.41~beta~dfsg2-3 Severity: grave Tags: security patch upstream Control: forward -1 https://github.com/sebsauvage/Shaarli/issues/134 Control: tag -1 fixed-upstream Hi, A security issue has been fixed a few months ago: https://github.com/sebsauvage/Shaarli/commit/53da2