From: Giuseppe Bilotta Date: Mon, 28 Mar 2011 17:00:25 +0000 (+0200) Subject: use real name X-Git-Url: http://git.tremily.us/?a=commitdiff_plain;h=144540f546892d6fd949cdbb8fe990c6f4781085;p=ikiwiki.git use real name --- diff --git a/doc/security.mdwn b/doc/security.mdwn index fb211cd12..916bd0484 100644 --- a/doc/security.mdwn +++ b/doc/security.mdwn @@ -466,7 +466,7 @@ with the comments plugin enabled. ([[!cve CVE-2011-0428]]) ## possible javascript insertion via insufficient htmlscrubbing of alternate stylesheets -Tango noticed that 'meta stylesheet` directives allowed anyone +Giuseppe Bilotta noticed that 'meta stylesheet` directives allowed anyone who could upload a malicious stylesheet to a site to add it to a page as an alternate stylesheet, or replacing the default stylesheet.