Mailman cross site scripting bug Moritz Naumann discovered a cross site scripting bug in Mailman's private archive script. http://mail.python.org/pipermail/mailman-announce/2006-April/000084.html http://bugs.gentoo.org/show_bug.cgi?id=129136
Created attachment 127627 [details] Patch extracted from the upstream tarballs
Please test: http://www.redhat.com/archives/fedora-test-list/2006-May/msg00131.html
I am suspecting that this bug report is related to the mailman package that was released in FEDORA-2006-535, mailman-2.1.8-0.FC5.1, <http://www.redhat.com/archives/fedora-package-announce/2006-May/msg00135.html>? If so, should this bug be closed ERRATA?
Yes, this issue was fixed in FEDORA-2006-535.