From a56a38bb40d11a01818b7e183e6dbbeb80adbb8a Mon Sep 17 00:00:00 2001 From: Matthieu Marcillaud <marcimat@rezo.net> Date: Mon, 13 Mar 2023 12:49:27 +0100 Subject: [PATCH] =?UTF-8?q?docs(changelog):=20Pour=20=C3=A9cran=20s=C3=A9c?= =?UTF-8?q?u?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- CHANGELOG.md | 3 +++ 1 file changed, 3 insertions(+) diff --git a/CHANGELOG.md b/CHANGELOG.md index fe5f282c07..9367e4581c 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -4,6 +4,9 @@ ### Security +- spip-team/securite#4840 Éviter `unserialize` dans l’écran de sécurité +- spip-team/securite#4840 Limiter la profondeur de recursion de `protege_champ` +- spip-team/securite#4840 Inclure l’écran de sécurité avant l’autoloader - spip-team/securite#4841 Limiter l’usage de `#ENV**` dans les formulaires. ### Added -- GitLab