Salvatore Bonaccorso dijo [Thu, Feb 22, 2018 at 08:46:30PM +0100]:
> There was a new Drupal security advisory at
>
> https://www.drupal.org/sa-core-2018-001
>
> where several issues affect as well drupal7.
>
> * JavaScript cross-site scripting prevention is incomplete - Critical -
>Drupal 7
Control: clone -1 -2 -3 -4
Control: retitle -1 drupal7: SA-CORE-2018-001: JavaScript cross-site scripting
prevention is incomplete
Control: retitle -2 drupal7: SA-CORE-2018-001: Private file access bypass
Control: retitle -3 drupal7: SA-CORE-2018-001: jQuery vulnerability with
untrusted domains
C
Source: drupal7
Version: 7.56-1
Severity: grave
Tags: security upstream
Hi
There was a new Drupal security advisory at
https://www.drupal.org/sa-core-2018-001
where several issues affect as well drupal7.
* JavaScript cross-site scripting prevention is incomplete - Critical -
Drupal 7 and D
3 matches
Mail list logo