[TYPO3-team-templavoila] FYI48: #13157: cm2 has no back functionality if returnUrl is given

Dmitry Dulepov dmitry.dulepov at gmail.com
Wed Jan 6 19:30:16 CET 2010


Hi!

On 06/01/2010 20:16, Steffen Kamper wrote:
> FYI: committed to svn
> 1_4 rev 28458
> trunk rev 28459

It seems that there is a security issue with this patch. There is a comment about in the bug tracker. It adds XSS vulnerability to TemplaVoila.

Steffen, please, comment.

-- 
Dmitry Dulepov
"Trust me, I am a doctor!" (c) Gregory House, M.D.


More information about the TYPO3-team-templavoila mailing list