[CMF-checkins] CVS: CMF - CHANGES.txt:1.146.4.28

Tres Seaver tseaver at zope.com
Fri May 14 17:44:42 EDT 2004


Update of /cvs-repository/CMF
In directory cvs.zope.org:/tmp/cvs-serv13517

Modified Files:
      Tag: CMF-1_4-branch
	CHANGES.txt 
Log Message:


  - Collector #243:  unscrubbed member property, 'email' could allow
    mail header injection.


  - Prep for 1.4.4 release.


=== CMF/CHANGES.txt 1.146.4.27 => 1.146.4.28 ===
--- CMF/CHANGES.txt:1.146.4.27	Thu Apr 22 13:29:55 2004
+++ CMF/CHANGES.txt	Fri May 14 17:44:12 2004
@@ -1,3 +1,10 @@
+CMF 1.4.4 (2004/05/14)
+
+  Bug Fixes
+
+    - Unchecked member property, 'email', could allow header injection
+      into system-generated e-mails (Collector #243).
+
 CMF 1.4.3 (2004/04/22)
 
   Bug Fixes




More information about the CMF-checkins mailing list