Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Wed, 10 Jun 2015 10:19:54 +0300
From: Henri Salo <henri@...v.fi>
To: Marek Sebera <marek.sebera@...il.com>
Cc: oss-security@...ts.openwall.com
Subject: Re: Possible XSS vulnerability on NIST NVD

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Tue, Jun 09, 2015 at 06:41:01PM +0200, Marek Sebera wrote:
> https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-1729

I do not think this issue deserves CVE identifier. I notified them via general
questions address in https://nvd.nist.gov/contact.cfm and they fixed it already.
Please contact them directly if you notice more issues, thank you.

- -- 
Henri Salo
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
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=S6/L
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.