Documenting the theme-as-cookie exploit fix.
authorgraf25 <graf25@7612ce4b-ef26-0410-bec9-ea0150e637f0>
Fri, 29 Mar 2002 15:57:28 +0000 (15:57 +0000)
committergraf25 <graf25@7612ce4b-ef26-0410-bec9-ea0150e637f0>
Fri, 29 Mar 2002 15:57:28 +0000 (15:57 +0000)
git-svn-id: https://svn.code.sf.net/p/squirrelmail/code/trunk/squirrelmail@2647 7612ce4b-ef26-0410-bec9-ea0150e637f0

ChangeLog

index 29e2487154fbb69eb6291fe26c82981a386bc0b8..f8a526212dd8ea38198816de4e5540e0da9ef3e1 100644 (file)
--- a/ChangeLog
+++ b/ChangeLog
@@ -4,6 +4,7 @@
 
 Version 1.2.6 -- CVS
 --------------------
+  - Fix for a "theme passed as cookie" exploit.
   - PostgreSQL is now supported for database backed use
   - Added user option to sort messages by internal date
   - Changed attachment handling now attachments are adressed to