[CVE] Use JSON to prevent malicious bookmark files from causing code execution
Bug #1758703 reported by
Simon Quigley
This bug report is a duplicate of:
Bug #1758699: [CVE] JavaScript in a book can access local files using XMLHttpRequest.
Edit
Remove
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
calibre (Ubuntu) |
Fix Released
|
High
|
Unassigned | ||
Artful |
New
|
High
|
Simon Quigley |
Bug Description
gui2/viewer/
Changed in calibre (Ubuntu Artful): | |
importance: | Undecided → High |
assignee: | nobody → Simon Quigley (tsimonq2) |
Changed in calibre (Ubuntu): | |
status: | New → Fix Released |
importance: | Undecided → High |
To post a comment you must log in.