> Ola Lundqvist <[EMAIL PROTECTED]> wrote: > > Interesting! Will you create a fix for this?
I took from the diff between imp-h3-4.1.4-rc1 and imp-h3-4.1.4 a working patch to fix the XSS vulnerability. I'm not really sure if I should submit a patch that would work against imp4_4.1.3-2 (in etch) or against imp4_4.1.3-3 (in sid)... Well, probably it will work against both. I'll send the patch after lunch. Best regards, -- Marcos Marado Sonaecom IT -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]