瀏覽代碼

Update devel changelog with security vuln.

Thijs Kinkhorst 21 年之前
父節點
當前提交
e19371da27
共有 1 個文件被更改,包括 2 次插入0 次删除
  1. 2 0
      ChangeLog

+ 2 - 0
ChangeLog

@@ -67,6 +67,8 @@ Version 1.5.1 -- CVS
   - Give proper error when PEAR DB not found.
   - Remove inappropriate strip_tags() from add-to-addressbook (#968475).
   - Prefs caching didn't work properly with register_globals off (#995102).
+  - Security: fix SQL injection vulnerability in addressbook
+    (CVE ID: CAN-2004-0521).
 
 Version 1.5.0
 --------------------