X-Git-Url: https://sipb.mit.edu/gitweb.cgi/ikiwiki.git/blobdiff_plain/72ed9e455c0cb697bd01a2a44b4b63820774cc35..1ecd251ffa28f851273654599f2d05c4bd552e16:/debian/changelog diff --git a/debian/changelog b/debian/changelog index 976143aee..8ad4ab502 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,3 +1,16 @@ +ikiwiki (1.47) unstable; urgency=low + + * Fix a security hole that allowed insertion of unsafe content via the meta + plugins's support for inserting html link and meta tags. Now such content + is passed through the htmlscrubber like everything else. + * Unfortunatly, that means that some valid uses of those tags are no longer + usable, and special case methods needed to be added for including + stylesheets, and for doing openid delegation. If you use either of these + in your wiki, it will need to be modified. See the meta plugin docs + for details. + + -- Joey Hess Wed, 21 Mar 2007 14:05:00 -0400 + ikiwiki (1.46) unstable; urgency=low * Fix a bug with inlined create page links, including Discussion links on