Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 10 Feb 2013 19:58:52 +0000
From:      Steve Wills <swills@FreeBSD.org>
To:        Sascha Gresk <sascha.gresk@opensource-consult.com>
Cc:        ruby@FreeBSD.org
Subject:   Re: redmine 1.3.1 in ports/www/redmine
Message-ID:  <5117FBFC.7060702@FreeBSD.org>
In-Reply-To: <1B6F5330-93B0-4A1B-AAB5-B1B210C7D1B5@opensource-consult.com>
References:  <1B6F5330-93B0-4A1B-AAB5-B1B210C7D1B5@opensource-consult.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On 02/01/13 15:59, Sascha Gresk wrote:
> http://www.redmine.org/projects/redmine/wiki/Security_Advisories
> 
> "Mass-assignemnt vulnerability that would allow an attacker to
> bypass part of the security checks"
> 

Thanks for the heads up. Would you be interested in helping out by
sending a patch or testing a patch if I come up with one?

Steve




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?5117FBFC.7060702>