[Yanel-dev] WARNING: Security issue re TinyMCE integration

Michael Wechner michael.wechner at wyona.com
Wed Jan 5 08:55:46 CET 2011


Hi

Simon recently pointed out that calling URLs such as for example

http://127.0.0.1:8080/yanel/from-scratch-realm/en/index.html.tinymce-edit.html

are not "necessarily" protected, whereas we have fixed this tentatively 
within the newest SVN version 55847, hence please make sure to update 
your local Yanel version.

We are currently working on further improving this, whereas there are 
several possibilities to do so and
we will send a follow-up email in order to discuss on how to best proceed.

Thanks

Michael


More information about the Yanel-development mailing list