From 01f543519f624263325d1e7ab6d3e0639997ec18 Mon Sep 17 00:00:00 2001 From: ccd0 Date: Thu, 15 May 2014 20:49:48 -0700 Subject: [PATCH] update CHANGELOG --- CHANGELOG.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/CHANGELOG.md b/CHANGELOG.md index d875fff52..89941408d 100755 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -1,3 +1,7 @@ +**ccd0** +- Security enhancement: Remove a means by which an archive administrator could inject malicious Javascript into the page when 4chan X fetches a post from the archive. +- Rewrite lots of HTML-generating code to make it easier to check for script injection vulnerabilities. + ### v1.7.37 *2014-05-14*