Previous work: T361321: Write and send supplementary release announcement for extensions and skins with security patches (1.39.8/1.40.4/1.41.2/1.42.0) / T353904: Write and send supplementary release announcement for extensions and skins with security patches (1.39.7/1.40.3/1.41.1)
| Maniphest ID | Extension or Skin | CVE ID | REL1_39 | REL1_41 | REL1_42 | master |
|---|---|---|---|---|---|---|
| T366991 | PageTriage | CVE-2024-47848 | No | No | Yes | Yes |
| T368594 | CSS | CVE-2024-47845 | No | No | Yes | Yes |
| T370022 | Widgets | CVE-2024-35226 | Yes | No | Yes | Yes |
| T370632 | Cargo | CVE-2024-47849 | No | No | No | Yes |
| T372209 | Cargo | CVE-2024-47846 | No | No | No | Yes |
| T372211 | Cargo | CVE-2024-47847 | No | No | No | Yes (1, 2, 3, 4) |
| T370081 | Apex | CVE-2024-47840 | No | No | Yes | Yes |
| T369486 | CSS | CVE-2024-47841 | No | No | Yes | Yes |
| T375358 | DataTransfer | CVE-2024-45048, CVE-2024-45046 | Yes | No | No | Yes |
Template
Notes
- T373889 - ext:CommunityConfiguration briefly had XSS issues on the beta cluster