From cf0f54ef8474ee0ab84e8953459734f5cec601a9 Mon Sep 17 00:00:00 2001 From: Bernhard Posselt Date: Sun, 23 Nov 2014 17:14:29 +0100 Subject: udpate picofeed to fix xxe --- CHANGELOG.md | 1 + 1 file changed, 1 insertion(+) (limited to 'CHANGELOG.md') diff --git a/CHANGELOG.md b/CHANGELOG.md index 596d41bab..cb58c7ec5 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -1,4 +1,5 @@ owncloud-news (4.2.0) +* **Security**: Fix [XEE](https://www.owasp.org/index.php/XML_External_Entity_(XXE)_Processing) vulnerability in picoFeed RSS library * **Enhancement**: Add admin setting to set a custom explore service URL * **Enhancement**: Add explore button and show explore button on startup * **Enhancement**: Show a hint when no articles are available -- cgit v1.2.3