Skip to content

Commit

Permalink
Merge pull request #16 from freedomofpress/cves-changelog
Browse files Browse the repository at this point in the history
Document CVEs in changelog
  • Loading branch information
legoktm authored Jan 30, 2025
2 parents 7ded107 + 564be9e commit 2362b6f
Showing 1 changed file with 2 additions and 2 deletions.
4 changes: 2 additions & 2 deletions changelog.md
Original file line number Diff line number Diff line change
Expand Up @@ -5,8 +5,8 @@
This release contains fixes for two security issues; please see our advisory for more details.

* Security fixes:
* Prevent path manipulation/traversal attacks in SDK
* Don't send source VM name to sd-log
* Prevent path manipulation/traversal attacks in SDK (CVE-2025-24888)
* Don't send source VM name to sd-log (CVE-2025-24889)

* Miscellaneous:
* Update year in messages.pot
Expand Down

0 comments on commit 2362b6f

Please sign in to comment.