Untriaged
Activity log
- Created suggestion
Cross-site scripting (XSS) vulnerability in templates/openid-selector.tmpl in ikiwiki before 3.20150329 …
Cross-site scripting (XSS) vulnerability in templates/openid-selector.tmpl in ikiwiki before 3.20150329 allows remote attackers to inject arbitrary web script or HTML via the openid_identifier parameter in a verify action to ikiwiki.cgi.
References
-
http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157025.html x_transferredx_refsource_MISC
-
http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157001.html x_transferredx_refsource_MISC
-
http://lists.fedoraproject.org/pipermail/package-announce/2015-May/157023.html x_transferredx_refsource_MISC
-
-
-
http://source.ikiwiki.branchable.com/?p=source.git%3Ba=commitdiff%3Bh=18dfba868… x_transferredx_refsource_MISC
-
-
-
Affected products
ikiwiki
- ==before 3.20150329
Matching in nixpkgs
pkgs.ikiwiki
Wiki compiler, storing pages and history in a RCS
-
nixos-unstable 3.20200202.3
- nixpkgs-unstable 3.20200202.3
- nixos-unstable-small 3.20200202.3
-
nixos-25.11 3.20200202.3
- nixos-25.11-small 3.20200202.3
- nixpkgs-25.11-darwin 3.20200202.3
pkgs.ikiwiki-full
Wiki compiler, storing pages and history in a RCS
-
nixos-unstable 3.20200202.3
- nixpkgs-unstable 3.20200202.3
- nixos-unstable-small 3.20200202.3
-
nixos-25.11 3.20200202.3
- nixos-25.11-small 3.20200202.3
- nixpkgs-25.11-darwin 3.20200202.3