[geeklog-cvs] geeklog: Added Geeklog 1.5.2sr1 to the changelog

geeklog-cvs at lists.geeklog.net geeklog-cvs at lists.geeklog.net
Tue Mar 31 14:40:20 EDT 2009


details:   http://project.geeklog.net/cgi-bin/hgweb.cgi/rev/8effbffba587
changeset: 6883:8effbffba587
user:      Dirk Haun <dirk at haun-online.de>
date:      Tue Mar 31 20:39:43 2009 +0200
description:
Added Geeklog 1.5.2sr1 to the changelog

diffstat:

2 files changed, 14 insertions(+)
public_html/docs/changes.html |    5 +++++
public_html/docs/history      |    9 +++++++++

diffs (34 lines):

diff -r 0ee08cd12a7f -r 8effbffba587 public_html/docs/changes.html
--- a/public_html/docs/changes.html	Tue Mar 31 20:35:56 2009 +0200
+++ b/public_html/docs/changes.html	Tue Mar 31 20:39:43 2009 +0200
@@ -35,6 +35,11 @@
 <li>The minimum PHP version required by Geeklog is now <strong>PHP 4.3.0</strong>. Given that the PHP team ended support for PHP 4 in August 2008, you should be
 looking into upgrading to PHP 5 anyway.</li>
 </ul>
+
+
+<h2><a name="changes152sr1">Geeklog 1.5.2sr1</a></h2>
+
+<p>Fernando Muñoz reported a possible <a href="http://en.wikipedia.org/wiki/XSS" title="Click to look up 'XSS' on Wikipedia" style="text-decoration: none; color: black; border-bottom: 1px dotted black;">XSS</a> in the query form on most admin panels that we are fixing with this release.</p>
 
 
 <h2><a name="changes152">Geeklog 1.5.2</a></h2>
diff -r 0ee08cd12a7f -r 8effbffba587 public_html/docs/history
--- a/public_html/docs/history	Tue Mar 31 20:35:56 2009 +0200
+++ b/public_html/docs/history	Tue Mar 31 20:39:43 2009 +0200
@@ -128,6 +128,15 @@
   now [Dirk]
 - Display "successfully saved" and "successfully deleted" messages, just like
   every other plugin and built-in function does (bug #0000644) [Dirk]
+
+ 
+Mar 30, 2009 (1.5.2sr1)
+------------
+
+This release addresses the following security issue:
+
+Fernando Munoz reported a possible XSS in the query form on most admin panels
+that we are fixing with this release (bug #0000841).
 
 
 Feb 8, 2009 (1.5.2)



More information about the geeklog-cvs mailing list