CVE-2008-1047: Cross-site scripting (XSS) vulnerability in tiki-edit_article.php in TikiWiki before 1.9.10.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Beside, the bundled smarty lib may be affected (see #212147 ), that's unfixed till latest version.
www-apps/tikiwiki-1.9.10.1 in cvs, only ppc has a stable version
Does it also fix the issue in the smarty copy?
ppc stable
Fixed in release snapshot.
(In reply to comment #2) > Does it also fix the issue in the smarty copy? No, bug 213320.
This is a vote, I vote NO.
NO too, and closing.