]> git.mjollnir.org Git - s9y.git/commitdiff
document
authorgarvinhicking <garvinhicking>
Sat, 15 Apr 2006 17:50:54 +0000 (17:50 +0000)
committergarvinhicking <garvinhicking>
Sat, 15 Apr 2006 17:50:54 +0000 (17:50 +0000)
docs/NEWS

index 0893b89a03e750c2378165675edc9f8be096a853..3641d7a2e300e284226beb5b36734fc73b8a8223 100644 (file)
--- a/docs/NEWS
+++ b/docs/NEWS
@@ -82,6 +82,12 @@ Version 1.1-alpha4()
 Version 1.0 ()
 ------------------------------------------------------------------------
 
+   * Saving special crafterd configuration data as Admin superuser
+     could lead to arbitrary PHP code inclusion from
+     serendipity_config_local.inc.php. Since admins usually already have
+     superuser rights over their files, this is not considered a
+     "real-life" security issue. (garvinhicking)
+                       
    * Added Pivot importer (garvinhicking)
 
    * The spamblock plugin now continues to check any comment/trackback