>>>>> "TK" == Tokio Kikuchi <[EMAIL PROTECTED]> writes:
TK> I forgot to realize language part of the bugtraq report!
TK> There are also language=<...> bug in listinfo.py, roster.py
TK> and subscribe.py. Is this bug in the error reporting function
TK> of python cgilib? Better to correct the library I suppose.
TK> Sorry but I have no time to generate patch now.
That's ok. I think the language bug isn't an xss bug (there's no
%(language)s in the code), but it will crash if a false language is
given deliberately.
I will fix these for 2.1.1.
-Barry
_______________________________________________
Mailman-Developers mailing list
[EMAIL PROTECTED]
http://mail.python.org/mailman/listinfo/mailman-developers