X-Git-Url: http://www.privoxy.org/gitweb/?a=blobdiff_plain;f=doc%2Fsource%2Fchangelog.sgml;h=95f7cfaba880ba1516b1c83032f3ead97243b457;hb=157312a27ddadfdca91ccd1ed4b7b6e300ca5e9b;hp=f5d26c865fa9e677b5d422c4f44a1ae6920af0ce;hpb=749db28d4a6a277a6e5cefe50088d79d9529d970;p=privoxy.git diff --git a/doc/source/changelog.sgml b/doc/source/changelog.sgml index f5d26c86..95f7cfab 100644 --- a/doc/source/changelog.sgml +++ b/doc/source/changelog.sgml @@ -28,7 +28,7 @@ and multiple DoS issues and a couple of other bugs. The issues also affect earlier Privoxy releases. Privoxy 3.0.33 also comes with - a couple of general improvements an new features. + a couple of general improvements and new features. Changes in Privoxy 3.0.33 stable: @@ -42,7 +42,7 @@ cgi_error_no_template(): Encode the template name to prevent - XSS (cross-side scripting) when Privoxy is configured to servce + XSS (cross-site scripting) when Privoxy is configured to servce the user-manual itself. Commit 0e668e9409c. OVE-20211102-0001. CVE-2021-44543. Reported by: Artem Ivanov