[koha-commits] main Koha release repository branch 18.11.x updated. v18.11.14-1-g610a6cf78b

Git repo owner gitmaster at git.koha-community.org
Sun Feb 23 21:53:45 CET 2020


This is an automated email from the git hooks/post-receive script. It was
generated because a ref change was pushed to the repository containing
the project "main Koha release repository".

The branch, 18.11.x has been updated
       via  610a6cf78bdced8b43a4dcb275b9b858f536ac11 (commit)
      from  35205cb39f33b841ab0d714a03ff60bac338e31a (commit)

Those revisions listed above that are new to this repository have
not appeared on any other notification email; so we list those
revisions in full, below.

- Log -----------------------------------------------------------------
commit 610a6cf78bdced8b43a4dcb275b9b858f536ac11
Author: Marcel de Rooy <m.de.rooy at rijksmuseum.nl>
Date:   Mon Jan 20 09:55:52 2020 +0000

    Bug 23290: [RMaint version] Mitigate XML/XSLT vulnerabilities
    
    This is a squashed version for backporting to stable branches.
    IMPORTANT: It does not move XSLT_Handler to XSLT/Base as in master.
    
    Signed-off-by: Lucas Gass <lucas at bywatersolutions.com>
    (cherry picked from commit d8bf40281b93faa944d48dddc52e418e588b01ec)
    
    Signed-off-by: Hayley Mapley <hayleymapley at catalyst.net.nz>

-----------------------------------------------------------------------

Summary of changes:
 Koha/XSLT/Security.pm               | 170 ++++++++++++++++++++++++++++++++++++
 Koha/XSLT_Handler.pm                |  24 ++++-
 t/db_dependent/Koha/XSLT/Security.t | 132 ++++++++++++++++++++++++++++
 3 files changed, 324 insertions(+), 2 deletions(-)
 create mode 100644 Koha/XSLT/Security.pm
 create mode 100644 t/db_dependent/Koha/XSLT/Security.t


hooks/post-receive
-- 
main Koha release repository


More information about the koha-commits mailing list