[Pkg-mozext-maintainers] Bug#1085455: form-history-control: dompurify

Bastien Roucariès rouca at debian.org
Sat Oct 19 16:46:29 BST 2024


Source: form-history-control
Version: dompurify
Severity: serious
Tags: security
Justification: security
X-Debbugs-Cc: Debian Security Team <team at security.debian.org>

Dear Maintainer,

you include a copy a dompurify that seems to be affected by recent CVE

https://sources.debian.org/src/form-history-control/2.5.1.0-1/common/purify.js/

Can you use the debian dompurify ?

Can you also documend in security tracker your embed code copy

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: This is a digitally signed message part.
URL: <http://alioth-lists.debian.net/pipermail/pkg-mozext-maintainers/attachments/20241019/a2a4f541/attachment.sig>


More information about the Pkg-mozext-maintainers mailing list