X-Git-Url: http://git.vanrenterghem.biz/git.ikiwiki.info.git/blobdiff_plain/dfadaa0bf91666859ef3760520b108aac730cee2..33b39968948f2dcda5c073916d797259e441d1de:/doc/news/version_3.20160506.mdwn?ds=sidebyside diff --git a/doc/news/version_3.20160506.mdwn b/doc/news/version_3.20160506.mdwn index 331a48b6b..6800a3022 100644 --- a/doc/news/version_3.20160506.mdwn +++ b/doc/news/version_3.20160506.mdwn @@ -22,7 +22,7 @@ ikiwiki 3.20160506 released with [[!toggle text="these changes"]] [[!toggleable text=""" * [ [[Simon McVittie|smcv]] ] * HTML-escape error messages, in one case avoiding potential cross-site - scripting (OVE-20160505-0012) + scripting ([[!cve CVE-2016-4561]], OVE-20160505-0012) * Mitigate ImageMagick vulnerabilities such as CVE-2016-3714: - img: force common Web formats to be interpreted according to extension, so that "allowed\_attachments: '*.jpg'" does what one might expect