aboutsummaryrefslogtreecommitdiff
path: root/doc/security.mdwn
diff options
context:
space:
mode:
authorSimon McVittie <smcv@debian.org>2016-05-06 21:35:14 +0100
committerSimon McVittie <smcv@debian.org>2016-05-06 21:36:51 +0100
commit0abef571c74e054bd6dfbaee140f1b334cdaa6e2 (patch)
treeb1d4e2d39e8dad611223e5223ef244eeba0e6897 /doc/security.mdwn
parent855a7b5c6cabdd095253da8a3ff89f769d657b27 (diff)
downloadikiwiki-0abef571c74e054bd6dfbaee140f1b334cdaa6e2.tar
ikiwiki-0abef571c74e054bd6dfbaee140f1b334cdaa6e2.tar.gz
Add CVE reference
Diffstat (limited to 'doc/security.mdwn')
-rw-r--r--doc/security.mdwn2
1 files changed, 1 insertions, 1 deletions
diff --git a/doc/security.mdwn b/doc/security.mdwn
index 6d4841fe6..594b72126 100644
--- a/doc/security.mdwn
+++ b/doc/security.mdwn
@@ -515,7 +515,7 @@ allowing an attacker to carry out cross-site scripting by directing a
user to a URL that would result in a crafted ikiwiki error message. This
was discovered on 4 May by the ikiwiki developers, and the fixed version
3.20160506 was released on 6 May. An upgrade is recommended for sites using
-the CGI.
+the CGI. ([[!cve CVE-2016-4561]], OVE-20160505-0012)
## ImageMagick CVE-2016–3714 ("ImageTragick")