oss-sec mailing list archives

CVE request: xss in XHProf


From: Murray McAllister <mmcallis () redhat com>
Date: Mon, 14 Oct 2013 12:01:19 +1100

Hello,

A cross-site scripting flaw was fixed in XHProf:

https://bugs.gentoo.org/show_bug.cgi?id=487858
http://pecl.php.net/package-changelog.php?package=xhprof&release=0.9.4
https://bugzilla.redhat.com/show_bug.cgi?id=1018114
http://pecl.php.net/package/xhprof

Can a CVE please be assigned if one has not been already?

Thanks,

--
Murray McAllister / Red Hat Security Response Team


Current thread: