mirror of
https://github.com/owasp-modsecurity/ModSecurity.git
synced 2025-08-14 13:56:01 +03:00
Update CHANGES security issues
This commit is contained in:
parent
29ed5c4dc7
commit
6e038228cb
4
CHANGES
4
CHANGES
@ -32,7 +32,7 @@
|
|||||||
|
|
||||||
* SECURITY: Added SecXmlExternalEntity (On|Off - default it Off) that will disable
|
* SECURITY: Added SecXmlExternalEntity (On|Off - default it Off) that will disable
|
||||||
by default the external entity load task executed by LibXml2. This is a security issue
|
by default the external entity load task executed by LibXml2. This is a security issue
|
||||||
reported by Timur Yunusov, Alexey Osipov (Positive Technologies).
|
[CVE-2013-1915] reported by Timur Yunusov, Alexey Osipov (Positive Technologies).
|
||||||
|
|
||||||
21 Jan 2013 - 2.7.2
|
21 Jan 2013 - 2.7.2
|
||||||
-------------------
|
-------------------
|
||||||
@ -130,7 +130,7 @@
|
|||||||
support Include directive like Apache2.
|
support Include directive like Apache2.
|
||||||
|
|
||||||
* Added MULTIPART_INVALID_PART flag. Also used in rule id 200002 for multipart strict
|
* Added MULTIPART_INVALID_PART flag. Also used in rule id 200002 for multipart strict
|
||||||
validation.
|
validation. https://www.sec-consult.com/fxdata/seccons/prod/temedia/advisories_txt/20121017-0_mod_security_ruleset_bypass.txt).
|
||||||
|
|
||||||
* Updated Reference Manual.
|
* Updated Reference Manual.
|
||||||
|
|
||||||
|
Loading…
x
Reference in New Issue
Block a user