+++ This bug was initially created as a clone of Bug #284874 +++ CVE-2008-7220 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-7220): Unspecified vulnerability in Prototype JavaScript framework (prototypejs) before 1.6.0.2 allows attackers to make "cross-site ajax requests" via unknown vectors. dev-python/tg-widgets-scriptaculous ships 1.5.0_rc0 in scriptaculous/static/javascript/prototype.js
Upstream won't be happening, the page with the widgets appears to be dead. Python team: only package with a dependency on this is tg-widgets-lightbox. Lastrite it or pmask it?
Go ahead and lastrite it.
+ 09 Jul 2013; <creffett@gentoo.org> package.mask: + Mask tg-widgets-scriptaculous and tg-widgets-lightbox for lastrite, bug + 284890. + Removal in 30 days.
Removed dev-python/tg-widgets-* from tree.