Debian Patches
Status for libhtml-formfu-perl/2.07000-3
| Patch | Description | Author | Forwarded | Bugs | Origin | Last update |
|---|---|---|---|---|---|---|
| how-to-report-bugs.diff | Gives more specific information for bug reporting | Ansgar Burchardt <ansgar@debian.org> | not-needed | 2018-12-15 | ||
| CVE-2026-19873-r1.patch.patch | Bound the Repeatable counter taken from the query string The counter_name query parameter was passed to repeat() with no upper bound, so a single request could ask for an arbitrary number of copies of the block's child subtree. (CVE-2026-19873) Add a max_counter attribute, defaulting to 100, that clamps the value read from the query. A count passed to repeat() by application code is not affected. |
Robert Rothenberg <rrwo@cpansec.org> | no | debian | 2026-08-21 |
