On 6 June 2018 at 10:45, Kyle Shannon <k...@pobox.com> wrote: > On Wed, Jun 6, 2018 at 11:44 AM Richard Hipp <d...@sqlite.org> wrote: >> >> On 6/6/18, Kyle Shannon <k...@pobox.com> wrote: >> > Our security team found another XSS, shall I forward the link to the list? >> >> Yes, please >> -- >> D. Richard Hipp >> d...@sqlite.org > > https://www.fossil-scm.org/index.html/timeline?advm=0&chng=%3C/script%3E%3Cscript%3Ealert(150)%3C/script%3E&n=50&ss=c >
Looks like it was fixed, roughly 20 minutes after you altered DRH. > -- > Kyle -- ------- inum: 883510009027723 sip: jungleboo...@sip2sip.info _______________________________________________ fossil-dev mailing list fossil-dev@mailinglists.sqlite.org http://mailinglists.sqlite.org/cgi-bin/mailman/listinfo/fossil-dev