From e36ce7b3c244921166a2974352701a59743ee5ccd7cebbdc599b89f4500a1be2 Mon Sep 17 00:00:00 2001 From: Dirk Mueller Date: Tue, 31 Mar 2020 20:28:11 +0000 Subject: [PATCH] address review feedback from https://build.opensuse.org/request/show/790090 - update to 3.1.3 (bsc#1167379, CVE-2020-6816): OBS-URL: https://build.opensuse.org/package/show/devel:languages:python/python-bleach?expand=0&rev=34 --- python-bleach.changes | 4 +--- 1 file changed, 1 insertion(+), 3 deletions(-) diff --git a/python-bleach.changes b/python-bleach.changes index 844b9d2..1b7059c 100644 --- a/python-bleach.changes +++ b/python-bleach.changes @@ -1,7 +1,7 @@ ------------------------------------------------------------------- Mon Mar 23 10:09:15 UTC 2020 - Dirk Mueller -- update to 3.1.3 (bsc#1167379): +- update to 3.1.3 (bsc#1167379, CVE-2020-6816): * Add relative link to code of conduct. (#442) * Drop deprecated 'setup.py test' support. (#507) * Fix typo: curren -> current in tests/test_clean.py (#504) @@ -15,8 +15,6 @@ Mon Mar 23 10:09:15 UTC 2020 - Dirk Mueller ``noscript``, ``style``, ``noframes``, ``iframe``, ``noembed``, or ``xmp`` in the allowed tags whitelist were vulnerable to a mutation XSS. - This security issue was confirmed in Bleach version v3.1.1. Earlier - versions are likely affected too. ------------------------------------------------------------------- Fri Feb 28 16:13:43 UTC 2020 - Alexandros Toptsoglou