Debian Linux Security Advisory 1951-1 – It was discovered that firefox-sage, a lightweight RSS and Atom feed reader for Firefox, does not sanitize the RSS feed information correctly, which makes it prone to a cross-site scripting and a cross-domain scripting attack.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/83867/dsa-1951-1.txt
Source: https://packetstormsecurity.com/files/83867/Debian-Linux-Security-Advisory-1951-1.html

