Is this the ticket you're referring to?  If so, it has already been
patched in the trunk.

http://trac.roundcube.net/trac.cgi/ticket/1484254

On 2/16/07, Chris Weber <[EMAIL PROTECTED]> wrote:
I setup a ticket for this bug.  I'll work on a patch if someone doesn't beat
me to it :)

-----Original Message-----
From: till [mailto:[EMAIL PROTECTED]
Sent: Friday, February 16, 2007 6:50 AM
To: Chris Weber
Cc: [email protected]
Subject: Re: security bugs

On 2/15/07, Chris Weber <[EMAIL PROTECTED]> wrote:
>
>
> I'm loving Roundcube, installation and configuration is a breeze, and
> the interface is elegant.  I just installed it today and plan to get
> some good use from it . I've also started poking at it to find any
> security issues I can.  What's the preferred method for me to submit
> security bugs such as XSS?

Preffered way is probably to setup a ticket and alert the list - just in
case. You are also welcome to send patches. :-)

Cheers,
--
Till Klampaeckel
e: mailto:[EMAIL PROTECTED]
p: +491704018676
l: http://beta.plazes.com/whereis/till

Want to know what's up in Berlin?
- http://berlin.metblogs.com






Reply via email to