← Back to team overview

mahara-contributors team mailing list archive

[Bug 1397736] [NEW] Use SafeCURL in external RSS block

 

Public bug reported:

For better security in the external RSS feed block, we should be using a
library like SafeCURL to help guard against attacks.:
https://github.com/fin1te/safecurl

See also bug 1394820

** Affects: mahara
     Importance: High
         Status: Confirmed

** Affects: mahara/1.10
     Importance: High
         Status: Confirmed

** Affects: mahara/1.8
     Importance: High
         Status: Confirmed

** Affects: mahara/1.9
     Importance: High
         Status: Confirmed

** Affects: mahara/15.04
     Importance: High
         Status: Confirmed

** Also affects: mahara/15.04
   Importance: Undecided
       Status: New

** Also affects: mahara/1.9
   Importance: Undecided
       Status: New

** Also affects: mahara/1.10
   Importance: Undecided
       Status: New

** Also affects: mahara/1.8
   Importance: Undecided
       Status: New

-- 
You received this bug notification because you are a member of Mahara
Contributors, which is subscribed to Mahara.
Matching subscriptions: Subscription for all Mahara Contributors -- please ask on #mahara-dev or mahara.org forum before editing or unsubscribing it!
https://bugs.launchpad.net/bugs/1397736

Title:
  Use SafeCURL in external RSS block

Status in Mahara ePortfolio:
  Confirmed
Status in Mahara 1.10 series:
  Confirmed
Status in Mahara 1.8 series:
  Confirmed
Status in Mahara 1.9 series:
  Confirmed
Status in Mahara 15.04 series:
  Confirmed

Bug description:
  For better security in the external RSS feed block, we should be using
  a library like SafeCURL to help guard against attacks.:
  https://github.com/fin1te/safecurl

  See also bug 1394820

To manage notifications about this bug go to:
https://bugs.launchpad.net/mahara/+bug/1397736/+subscriptions


Follow ups

References