[WebKit-devel] Cross-site scripting (XSS) vulnerability

Dawit A adawit at kde.org
Thu Sep 16 06:18:54 CEST 2010


That is nonsense. The issue was already addressed when it was reported
back in December!  See comment #3 in the KDE bug report link provided
in CVE itself. No clue why this is being reopened again. Don't they
first attempt to test to make sure something is vulnerable first ?

On Wed, Sep 15, 2010 at 6:54 PM,  <alekcejk at googlemail.com> wrote:
> Hi,
>
> There is mentioned that kwebkitpart 0.9.6 beta have
> cross-site scripting (XSS) vulnerability
>
> http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-4976
>
> Is there fix available for this issue?
>
> Alexey Kurov <nucleo at fedoraproject.org>
> _______________________________________________
> WebKit-devel mailing list
> WebKit-devel at kde.org
> https://mail.kde.org/mailman/listinfo/webkit-devel
>


More information about the WebKit-devel mailing list