Bug#988886: adminer: CVE-2021-29625: XSS in doc_link

2021-05-24 Thread Salvatore Bonaccorso
On Mon, May 24, 2021 at 10:43:50PM +0200, Moritz Mühlenhoff wrote: > Am Fri, May 21, 2021 at 12:39:42PM +0200 schrieb Alexandre Rossi: > > bullseye : this bug is not RC, so no update. > > Security bugs can still be fixed in they are sensibly backportable, > even if not RC. Simply upload to

Bug#988886: adminer: CVE-2021-29625: XSS in doc_link

2021-05-24 Thread Moritz Mühlenhoff
Am Fri, May 21, 2021 at 12:39:42PM +0200 schrieb Alexandre Rossi: > bullseye : this bug is not RC, so no update. Security bugs can still be fixed in they are sensibly backportable, even if not RC. Simply upload to unstable and ask for an unblock. Cheers, Moritz

Bug#988886: adminer: CVE-2021-29625: XSS in doc_link

2021-05-21 Thread Alexandre Rossi
found 96 4.7.1-1 thanks Hi, Thanks for bringing this to my attention. > I'm slightly confused about the available information about the > affected version. From the code it looks to me that 4.7.1 as in stable > would be affected as well, but upstream is claiming 4.7.8 is affected > to

Bug#988886: adminer: CVE-2021-29625: XSS in doc_link

2021-05-20 Thread Salvatore Bonaccorso
Source: adminer Version: 4.7.9-1 Severity: important Tags: security upstream X-Debbugs-Cc: car...@debian.org, Debian Security Team Hi, The following vulnerability was published for adminer. CVE-2021-29625[0]: | Adminer is open-source database management software. A cross-site | scripting