|
|
| |
|
| |
perl-Mojolicious: cross-site scripting
| Package(s): | perl-Mojolicious |
CVE #(s): | CVE-2011-1841
CVE-2010-4803
|
| Created: | May 16, 2011 |
Updated: | May 25, 2011 |
| Description: |
From the CVE entries:
Cross-site scripting (XSS) vulnerability in the link_to helper in Mojolicious before 1.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. (CVE-2011-1841)
Mojolicious before 0.999927 does not properly implement HMAC-MD5 checksums, which has unspecified impact and remote attack vectors. (CVE-2010-4803) |
| Alerts: |
|
( Log in to post comments)
|
|
|