On 6 June 2018 at 10:45, Kyle Shannon <k...@pobox.com> wrote:
> On Wed, Jun 6, 2018 at 11:44 AM Richard Hipp <d...@sqlite.org> wrote:
>>
>> On 6/6/18, Kyle Shannon <k...@pobox.com> wrote:
>> > Our security team found another XSS, shall I forward the link to the list?
>>
>> Yes, please
>> --
>> D. Richard Hipp
>> d...@sqlite.org
>
> https://www.fossil-scm.org/index.html/timeline?advm=0&chng=%3C/script%3E%3Cscript%3Ealert(150)%3C/script%3E&n=50&ss=c
>

Looks like it was fixed, roughly 20 minutes after you altered DRH.

> --
> Kyle


-- 
-------
inum: 883510009027723
sip: jungleboo...@sip2sip.info
_______________________________________________
fossil-dev mailing list
fossil-dev@mailinglists.sqlite.org
http://mailinglists.sqlite.org/cgi-bin/mailman/listinfo/fossil-dev

Reply via email to