[Yanel-dev] WARNING: Security issue re TinyMCE integration
Michael Wechner
michael.wechner at wyona.com
Wed Jan 5 08:55:46 CET 2011
Hi
Simon recently pointed out that calling URLs such as for example
http://127.0.0.1:8080/yanel/from-scratch-realm/en/index.html.tinymce-edit.html
are not "necessarily" protected, whereas we have fixed this tentatively
within the newest SVN version 55847, hence please make sure to update
your local Yanel version.
We are currently working on further improving this, whereas there are
several possibilities to do so and
we will send a follow-up email in order to discuss on how to best proceed.
Thanks
Michael
More information about the Yanel-development
mailing list