package: dokuwiki
version: 0.0.20061106-6
severity: important
tags +security

Hi,

thanks for packaging dokuwiki!

I just installed the version from stable and when I browse the wiki the 
following lines are displayed in the top of the pages:

New release available: 2008-05-05. upgrade now! [14]
New release candidate available: 2008-04-11. upgrade now! [12]
New release candidate available: 2008-03-31. upgrade now! [11]
An XSS vulnerability was discovered, read the bug report for manual fixing or 
upgrading [10]
New release available: 2007-06-26. upgrade now! [9]
New release candidate available: 2007-05-24. upgrade now! [8]

At least the XSS issue seems worthwhile fixing to me, but from a usability 
point of view I would also welcome if the other liners would not be displayed 
(as long as the version in stable has no security issues).


regards,
  Holger

Attachment: pgpQIG8OWwHaM.pgp
Description: PGP signature

Reply via email to