Common Vulnerabilities and Exposures assigned an identifier CVE-2011-1841 to the following vulnerability: Name: CVE-2011-1841 URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1841 Assigned: 20110502 Reference: http://cpansearch.perl.org/src/KRAIH/Mojolicious-1.20/Changes Cross-site scripting (XSS) vulnerability in the link_to helper in Mojolicious before 1.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
The upstream commit is here: https://github.com/kraih/mojo/commit/f6801ef7be8c78092e38f870b19fae3da0899d60#lib/Mojolicious/Plugin/TagHelpers.pm
Created perl-Mojolicious tracking bugs for this issue Affects: fedora-13 [bug 701718] Affects: fedora-14 [bug 701719]