[Bug 1336671] New: CVE-2016-2803 bugzilla: Cross-site-scripting in dependency graphs