From ec02df216007cdb9a76f7bb1c9d2439f586d77c3 Mon Sep 17 00:00:00 2001 From: Ingo Schommer Date: Wed, 19 Feb 2014 15:22:12 +1300 Subject: [PATCH] Removed SS-2014-002 from changelog, not backported to 3.0 --- docs/en/changelogs/rc/3.0.9-rc1.md | 11 +---------- 1 file changed, 1 insertion(+), 10 deletions(-) diff --git a/docs/en/changelogs/rc/3.0.9-rc1.md b/docs/en/changelogs/rc/3.0.9-rc1.md index 24dc8fe83..6ca75cbcb 100644 --- a/docs/en/changelogs/rc/3.0.9-rc1.md +++ b/docs/en/changelogs/rc/3.0.9-rc1.md @@ -3,13 +3,4 @@ ## Overview * Security: Require ADMIN for ?flush=1&isDev=1 ([SS-2014-001](http://www.silverstripe.org/ss-2014-001-require-admin-for-flush1-and-isdev1)) - * Security: XSS in third party library (SWFUpload) ([SS-2014-002](http://www.silverstripe.org/ss-2014-002-xss-in-third-party-library-swfupload/)) - * Security: SiteTree.ExtraMeta allows JavaScript for malicious CMS authors ([SS-2014-003](http://www.silverstripe.org/ss-2014-003-extrameta-allows-javascript-for-malicious-cms-authors-/)) - -## Upgrading - -### SiteTree.ExtraMeta allows JavaScript for malicious CMS authors - -If you have previously used the `SiteTree.ExtraMeta` field for `` markup -other than its intended use case (`` and ``), please consult -[SS-2014-003](http://www.silverstripe.org/ss-2014-003-extrameta-allows-javascript-for-malicious-cms-authors-/). \ No newline at end of file + * Security: XSS in third party library (SWFUpload) ([SS-2014-002](http://www.silverstripe.org/ss-2014-002-xss-in-third-party-library-swfupload/)) \ No newline at end of file