Path to this page:
Subject: CVS commit: pkgsrc/www/ruby-loofah
From: Takahiro Kambe
Date: 2018-11-01 17:11:45
Message id: 20181101161145.3BD5EFBEE@cvs.NetBSD.org
Log Message:
www/ruby-loofah: update to 2.2.3
## 2.2.3 / 2018-10-30
### Security
Address CVE-2018-16468: Unsanitized JavaScript may occur in sanitized output \
when a crafted SVG element is republished.
This CVE's public notice is at https://github.com/flavorjones/loofah/issues/154
## Meta / 2018-10-27
The mailing list is now on Google Groups \
[#146](https://github.com/flavorjones/loofah/issues/146):
* Mail: loofah-talk@googlegroups.com
* Archive: https://groups.google.com/forum/#!forum/loofah-talk
This change was made because librelist no longer appears to be maintained.
Files: