Path to this page:
Subject: CVS commit: pkgsrc/www/geeklog
From: Takahiro Kambe
Date: 2013-02-21 14:01:24
Message id: 20130221130124.6B6B1175DD@cvs.netbsd.org
Log Message:
Update geeklog to 1.8.2.1 (Geeklog 1.8.2sr1).
Geeklog History/Changes:
Feb 19, 2013 (1.8.2sr1)
------------
This release addresses the following security issues:
- High-Tech Bridge Security Research Lab reported an XSS in the calendar_type
parameter in the Calendar plugin (HTB23143).
- Trustwave Spiderlabs reported XSS in the install script, the Configuration,
as well as in the Admin interfaces for the Polls plugin and the Topic editor
(TWSL2013-001).
Not security-related:
- Fixed Twitter OAuth login by switching to version 1.1 of the Twitter API
(feature request #0001506).
Files: