IlohaMail 0.9-20050415 released
This is primarily a security update to patch a number of XSS vulnerabilities, and is highly recommended if you are using any previous version of IlohaMail 0.9 (patched versions of 0.8.x will follow shortly).
Download now.
Show Rest of Post
- Fixed XSS vulnerability where attachment names and types were being displayed without filtering
- Improved filter for HTML messages to remove potentially malicious tags (such as script, iframe, object) and attributes (event handlers, style). Filter can be disabled on a per-message basis.
- Minor cleanup in DB error messages
Posted Tue, Mar 28, 2006 12:06 by Albert Brooks@83.103.52.206
From: http://www.tribal-music.premp3.net
[moderate]