Wikimedia Security Team/AppSec Clinic Minutes/2022-06-21

Date: 2022-06-21

Attending:, ,

Phabricator Tasks In Progress

 * 1) T307278 - Patch still in progress
 * 2) T308583 - Triaged, moved to secteam Watching, done.
 * 3) T309411 - Urbanecm wrote/deployed config patch, done.
 * 4) T309894 - Tag MW-Core, core platform, determine ownership.
 * 5) T310023 - Assigned to  for triage
 * 6) T310304 - Assigned to  for triage
 * 7) T306514 - Still in-progress
 * 8) T308473 - Reached out to Daimona regarding a patch
 * 9) T309255 - Recommended retire affected extension, under further review
 * 10) T290313 - Deemed low risk
 * 11) T309943 - Zabe added, tag Traffic/Brandon, see who can look at remaining items
 * 12) T306516 - No update at this time
 * 13) T306211 - No update at this time
 * 14) T309703 - Assigned for further review and triage
 * 15) T308471 - Patch written and posted, just push through gerrit
 * 16) T308861 - Patch written and posted, try to get CR then deploy
 * 17) T309078 - Possibly triage more and add teams/owners?
 * 1) T308471 - Patch written and posted, just push through gerrit
 * 2) T308861 - Patch written and posted, try to get CR then deploy
 * 3) T309078 - Possibly triage more and add teams/owners?
 * 1) T309078 - Possibly triage more and add teams/owners?

New Phabricator Tasks Reviewed

 * 1) T310069 - Assigned to  for triage
 * 2) T310098 - Assigned to  for triage
 * 3) Resolved for now, suggested making public in a week.
 * 4) T310393 - Assigned to  to triage
 * 5) T310312 - Assigned to  to verify and complete
 * 6) T310314 - Assigned to  to verify and complete