{"id":"openSUSE-SU-2020:1765-1","summary":"Security update for pagure","details":"This update for pagure fixes the following issues:\n\n- CVE-2019-11556: Fixed XSS via the templates/blame.html blame view  (boo#1176987)\n","modified":"2026-02-04T03:52:23.126534Z","published":"2020-10-29T11:23:30Z","related":["CVE-2019-11556"],"upstream":["CVE-2019-11556"],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/7MNBOTLWY6R4VZELMYRIDBISAI5ZPNQ6/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1176987"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-11556"}],"affected":[{"package":{"name":"pagure","ecosystem":"openSUSE:Leap 15.1","purl":"pkg:rpm/opensuse/pagure&distro=openSUSE%20Leap%2015.1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.5-lp151.2.3.1"}]}],"ecosystem_specific":{"binaries":[{"pagure-theme-default-openSUSE":"5.5-lp151.2.3.1","pagure-theme-pagureio":"5.5-lp151.2.3.1","pagure-theme-srcfpo":"5.5-lp151.2.3.1","pagure":"5.5-lp151.2.3.1","pagure-ci":"5.5-lp151.2.3.1","pagure-ev":"5.5-lp151.2.3.1","pagure-loadjson":"5.5-lp151.2.3.1","pagure-logcom":"5.5-lp151.2.3.1","pagure-theme-chameleon":"5.5-lp151.2.3.1","pagure-theme-default-upstream":"5.5-lp151.2.3.1","pagure-theme-upstream":"5.5-lp151.2.3.1","pagure-webhook":"5.5-lp151.2.3.1","pagure-milters":"5.5-lp151.2.3.1","pagure-mirror":"5.5-lp151.2.3.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2020:1765-1.json"}}],"schema_version":"1.7.3"}