[freenet-dev] Bug tracker problems

2010-04-21 Thread Matthew Toseland
I have to switch Mantis from packaged to directly installed: - Mantis 1.2.0 contains critical bug fixes including remote admin and cross-site scripting vulnerabilities capable of capturing plaintext passwords. - Mantis 1.1 is officially unmaintained. - Mantis does not appear to ask for CVE's, so t

[freenet-dev] Bug tracker problems

2010-04-21 Thread Evan Daniel
On Wed, Apr 21, 2010 at 8:46 AM, Matthew Toseland wrote: > I have to switch Mantis from packaged to directly installed: > - Mantis 1.2.0 contains critical bug fixes including remote admin and > cross-site scripting vulnerabilities capable of capturing plaintext passwords. > - Mantis 1.1 is offici

Re: [freenet-dev] Bug tracker problems

2010-04-21 Thread Evan Daniel
On Wed, Apr 21, 2010 at 8:46 AM, Matthew Toseland wrote: > I have to switch Mantis from packaged to directly installed: > - Mantis 1.2.0 contains critical bug fixes including remote admin and > cross-site scripting vulnerabilities capable of capturing plaintext passwords. > - Mantis 1.1 is offici

[freenet-dev] Bug tracker problems

2010-04-21 Thread Matthew Toseland
I have to switch Mantis from packaged to directly installed: - Mantis 1.2.0 contains critical bug fixes including remote admin and cross-site scripting vulnerabilities capable of capturing plaintext passwords. - Mantis 1.1 is officially unmaintained. - Mantis does not appear to ask for CVE's, so t