oss-sec mailing list archives

Re: Dotclear 2.9.1 XSS vulnerability by SVG


From: Aymeric <mulx () aplu fr>
Date: Wed, 04 May 2016 14:23:39 +0200

On 2016-05-04 08:46, limingxing wrote:
Hello,
We find an vulnerability about Dotclear 2.9.1 XSS vulnerability by SVG
[zip]

Hello,

FYI, I forwarded your email to their dev mailing list.
Please, if you found any other vulnerability on dotclear, at least add them to cc security(@)dotclear.net (http://dev.dotclear.org/2.0/).

Bye


Current thread: