Explorar o código

Changelog noopener

Alexandre Alapetite %!s(int64=9) %!d(string=hai) anos
pai
achega
6450839b87
Modificáronse 1 ficheiros con 2 adicións e 0 borrados
  1. 2 0
      CHANGELOG.md

+ 2 - 0
CHANGELOG.md

@@ -2,6 +2,8 @@
 
 ## 2016-XX-XX FreshRSS 1.6.0-dev
 
+* Security
+	* Prevent `<a target="_blank">` attacks with `window.opener` [#1245](https://github.com/FreshRSS/FreshRSS/issues/1245)
 * UI
 	* Download icon 💾 for podcasts [#1236](https://github.com/FreshRSS/FreshRSS/issues/1236)