Vulnerability Bulletins

DSA-3715 moin - security update

   
Affected software Debian
 
Several cross-site scripting vulnerabilities were discovered in moin, aPython clone of WikiWiki. A remote attacker can conduct cross-sitescripting attacks via the GUI editors attachment dialogue(CVE-2016-7146),the AttachFile view (CVE-2016-7148)and the GUI editors link dialogue (CVE-2016-9119).

More info:

https://www.debian.org/security/2016/dsa-3715