[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#954985: buster-pu: package node-knockout/3.4.2-2+deb10u1



Control: tags -1 + confirmed

On Thu, 2020-03-26 at 11:21 +0100, Xavier Guimard wrote:
> node-knockout is vunerable to CVE-2019-14862 (#943560): bad escaping
> for old MSIE browsers (MSIE ≤ 7). This little patche fixes this
> issue.

Well, no one should be using those browsers anyway. But sure, go ahead.

Regards,

Adam


Reply to: