File _patchinfo of Package patchinfo.8461
<patchinfo incident="8461">
<packager>XRevan86</packager>
<issue tracker="bnc" id="1101507">VUL-0: CVE-2018-1000559: qutebrowser: Cross Site Scripting (XSS) vulnerability in history command</issue>
<issue tracker="bnc" id="1100968">VUL-0: CVE-2018-10895: qutebrowser: Cross-site request forgery flaw allows sites to access 'qute://*' URLs and execute arbitrary code</issue>
<issue tracker="cve" id="2018-1000559"></issue>
<issue tracker="cve" id="2018-10895"></issue>
<category>security</category>
<rating>moderate</rating>
<summary>Security update for qutebrowser</summary>
<description>This update for qutebrowser fixes the following issues:
Security issue fixed:
- CVE-2018-1000559: Fix an XSS issue on qute://history (boo#1101507).
- CVE-2018-10895: Fix CSRF issue on the qute://settings page (boo#1100968).
</description>
</patchinfo>