Skip to content

Commit ff2bde4

Browse files
authored
Added CVE number to escaping issue in changelog [skip ci]
1 parent 3a060d2 commit ff2bde4

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

framework/CHANGELOG.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@ Yii Framework 2 Change Log
44
2.0.13 under development
55
------------------------
66

7-
- Enh #14022: `yii\web\UrlManager::setBaseUrl()` now supports aliases (dmirogin)
7+
- Enh #14022: `yii\web\UrlManager::setBaseUrl()` now supports al14492iases (dmirogin)
88
- Bug #14471: `ContentNegotiator` will always set one of the configured server response formats even if the client does not accept any of them (PowerGamer1)
99
- Bug #14525: Fixed 2.0.12 regression of loading of global fixtures trough `yii fixture/load` (michaelarnauts)
1010
- Bug #14523: Added `yii\web\MultipartFormDataParser::$force` option allowing to enforce parsing even on 'POST' request (klimov-paul)
@@ -48,7 +48,7 @@ Yii Framework 2 Change Log
4848
- Bug #14318: Trigger `yiiActiveForm.events.afterValidateAttribute` after updating attribute (dmirogin)
4949
- Bug #14493: Fixed getting permissions in `yii\rbac\Dbmanger::getPermissionsByUser` by user with id equals 0 (dmirogin)
5050
- Bug #14370: Fixed creating built-in validator in model with same function name (dmirogin)
51-
- Bug #14492: Fixed error handler not escaping error info debug mode (samdark)
51+
- Bug #14492: Fixed error handler not escaping error info debug mode, see CVE-2017-11516 (samdark)
5252
- Chg #14487: Changed i18n message error to warning (dmirogin)
5353
- Enh #7823: Added `yii\filters\AjaxFilter` filter (dmirogin)
5454
- Enh #14363: Added `yii\widgets\LinkPager::$linkContainerOptions` and possibility to override tag in `yii\widgets\LinkPager::$options` (dmirogin)

0 commit comments

Comments
 (0)