Path to this page:
Subject: CVS commit: pkgsrc/www/davical
From: Hauke Fath
Date: 2019-12-12 09:12:27
Message id: 20191212081227.7AC02FA97@cvs.NetBSD.org
Log Message:
Update www/davical to v1.1.9.2
From upstream's changelog:
1.1.9.2:
Bug Fixes
Fix CSRF not being checked in collection-edit.php
Other Changes
use foreach() instead of deprecated each()
1.1.9.1:
Bug Fixes
Corrects reflected cross-site scripting (XSS) vulnerability
Corrects persistent XSS vulnerability in user/group/resource details
Corrects persistent XSS vulnerability in user/group/resource list
Adds token to address cross-site request forgery (CSRF) vulnerability
Corrects syntax error in name of collection_id
Make calquery aware of default timezone
Corrections to range-based calendar queries
Add missing 'break' to rrule.php
Other Changes
Updated PHP version requirement
Files: