perl-Mojolicious: cross-site scripting
Package(s): | perl-Mojolicious | CVE #(s): | CVE-2011-1841 CVE-2010-4803 | ||||||||||||
Created: | May 16, 2011 | Updated: | May 25, 2011 | ||||||||||||
Description: | From the CVE entries:
Cross-site scripting (XSS) vulnerability in the link_to helper in Mojolicious before 1.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. (CVE-2011-1841) Mojolicious before 0.999927 does not properly implement HMAC-MD5 checksums, which has unspecified impact and remote attack vectors. (CVE-2010-4803) | ||||||||||||||
Alerts: |
|