Previous work: T361321: Write and send supplementary release announcement for extensions and skins with security patches (1.39.8/1.40.4/1.41.2/1.42.0) / T353904: Write and send supplementary release announcement for extensions and skins with security patches (1.39.7/1.40.3/1.41.1)
Maniphest ID | Extension or Skin | CVE ID | REL1_39 | REL1_41 | REL1_42 | master |
---|---|---|---|---|---|---|
T366991 | PageTriage | CVE-2024-47848 | No | No | Yes | Yes |
T368594 | CSS | CVE-2024-47845 | No | No | Yes | Yes |
T370022 | Widgets | CVE-2024-35226 | Yes | No | Yes | Yes |
T370632 | Cargo | CVE-2024-47849 | No | No | No | Yes |
T372209 | Cargo | CVE-2024-47846 | No | No | No | Yes |
T372211 | Cargo | CVE-2024-47847 | No | No | No | Yes (1, 2, 3, 4) |
T370081 | Apex | CVE-2024-47840 | No | No | Yes | Yes |
T369486 | CSS | CVE-2024-47841 | No | No | Yes | Yes |
T375358 | DataTransfer | CVE-2024-45048, CVE-2024-45046 | Yes | No | No | Yes |
Template
Notes
- T373889 - ext:CommunityConfiguration briefly had XSS issues on the beta cluster