Cross-site scripting (XSS) vulnerability in WebSVN 2.3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the path parameter to log.php.
http://www.debian.org/security/2016/dsa-3490
http://lists.fedoraproject.org/pipermail/package-announce/2016-March/179168.html