Update ChangeLog.rst

This commit is contained in:
Carpentier Pierre-Francois 2019-01-02 23:59:03 +01:00 committed by GitHub
parent 636400b75f
commit 1f79648d57
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 3 additions and 0 deletions

View File

@ -1,6 +1,9 @@
Dev
***
* [sec ] fix XSS injection in the url redirect in the login page (thanks to jthiltges)
* [impr] more systematic use of html and url escaping in the html rendering to prevent against content injection (thanks to jthiltges)
Version 0.5.2
*************