|
|
Subscribe / Log in / New account

perl-Mojolicious: cross-site scripting

Package(s):perl-Mojolicious CVE #(s):CVE-2011-1841 CVE-2010-4803
Created:May 16, 2011 Updated:May 25, 2011
Description: From the CVE entries:

Cross-site scripting (XSS) vulnerability in the link_to helper in Mojolicious before 1.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. (CVE-2011-1841)

Mojolicious before 0.999927 does not properly implement HMAC-MD5 checksums, which has unspecified impact and remote attack vectors. (CVE-2010-4803)

Alerts:
Debian DSA-2239-1 libmojolicious-perl 2011-05-24
Fedora FEDORA-2011-6462 perl-Mojolicious 2011-05-04
Fedora FEDORA-2011-6465 perl-Mojolicious 2011-05-04

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds