Mercurial > p > roundup > code
diff CHANGES.txt @ 5664:5579fa034f9e
Fix fix XSS issue in wsgi and cgi when handing url not found/404. issue2551035
| author | John Rouillard <rouilj@ieee.org> |
|---|---|
| date | Fri, 22 Mar 2019 18:16:11 -0400 |
| parents | a60cbbcc9309 |
| children | f3d68c1bb96e |
line wrap: on
line diff
--- a/CHANGES.txt Fri Mar 22 14:43:21 2019 +0100 +++ b/CHANGES.txt Fri Mar 22 18:16:11 2019 -0400 @@ -100,6 +100,10 @@ HTTP_X-REQUESTED-WITH to HTTP_X_REQUESTED_WITH. The last is correct. Also fix roundup-server to produce the latter form. (Patch by Cédric Krier, reviewed/applied John Rouillard.) +- issue2551035 - fix XSS issue in wsgi and cgi when handing url not + found/404. Reported by hannob at + https://github.com/python/bugs.python.org/issues/34, issue opened by + JulienPalard. 2018-07-13 1.6.0
