[Secure-testing-commits] r31310 - data/CVE

Paul Wise pabs at moszumanska.debian.org
Wed Jan 14 04:36:04 UTC 2015


Author: pabs
Date: 2015-01-14 04:36:04 +0000 (Wed, 14 Jan 2015)
New Revision: 31310

Modified:
   data/CVE/list
Log:
node-serve-static Open Redirect

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-13 21:10:36 UTC (rev 31309)
+++ data/CVE/list	2015-01-14 04:36:04 UTC (rev 31310)
@@ -1,3 +1,7 @@
+CVE-2015-XXXX (Open Redirect)
+	- node-serve-static <unfixed>
+	NOTE: https://nodesecurity.io/advisories/serve-static-open-redirect
+	NOTE: https://github.com/expressjs/serve-static/issues/26
 CVE-2015-1048
 	RESERVED
 CVE-2015-1047




More information about the Secure-testing-commits mailing list