Bug#626135: libmojolicious-perl: XSS vulnerability in the link_to helper

2011-05-10 Thread Moritz Muehlenhoff
On Mon, May 09, 2011 at 07:44:21AM +0200, Salvatore Bonaccorso wrote: > Package: libmojolicious-perl > Version: 0.26-1+squeeze1 > Severity: grave > Tags: squeeze security > Justification: user security hole > > Hi > > libmojolicious-perl prior to 1.12 seems vulnerable to a cross-site > script

Bug#626135: libmojolicious-perl: XSS vulnerability in the link_to helper

2011-05-08 Thread Salvatore Bonaccorso
Package: libmojolicious-perl Version: 0.26-1+squeeze1 Severity: grave Tags: squeeze security Justification: user security hole Hi libmojolicious-perl prior to 1.12 seems vulnerable to a cross-site scripting vulnerability. The CVE for this issue is CVE-2011-1841 [1]. [1] http://security-tr