From: K. O. <web...@my...> - 2003-07-09 09:55:37
|
Hi Chapi, Sure, but unfortunately I do not have the time to look into them all. If possible, I would like somebody very familiar with XSS and related security vulnerabilities to take a look at the codes. There are really many hacks/modules that look very interesting and should be integrated to the core, but that's not very esay since some of them lack making the codes secure enough. It is very easy to secure them once they are found, but it is really easily forgotten as well. One little cross site scripting hole requires another 2.0.x. ;-) Anyway, the newbb hacks look really interesting and I will test them if time permits.. - Kazu ----- Original Message ----- From: "Tobias Liegl" <in...@ch...> To: <xoo...@li...> Sent: Wednesday, July 09, 2003 12:29 AM Subject: AW: [Xoops-development] newbb minor bug Hi, while you were fixing bugs of newbb. Did you saw the "hacks" contributed for the newbb? Here is a listing of them: http://www.xoops.org/modules/newbb/viewtopic.php?topic_id=10078&forum=8 How about integrating these "hacks" too? Also did you read the following thread? http://www.xoops.org/modules/newbb/viewtopic.php?topic_id=10156&forum=8 Catzwolf has integrade many features in the newbb of xoops1 and will port these changes to the newbb of xoops2. Maybe this is also a module enhancement to look after .. This is just meant for information, as I don't know if your read ALL the posts at xoops.org ;-) Greetz Tobi aka chapi -- www.chapi.de |