Security advisories for third-party projects that are not part of Drupal core - this includes all modules, themes, and installation profiles that have been contributed by a community member. These posts by the Drupal security team are also sent to the security announcements e-mail list.

RESTful - Moderately Critical - Access bypass - SA-CONTRIB-2015-147

Twitter - Moderately Critical - Access bypass - SA-CONTRIB-2015-146

Fieldable Panels Panes - Less Critical - Access bypass - SA-CONTRIB-2015-145

Mass Contact - Moderately Critical - Cross Site Scripting (XSS) - SA-CONTRIB-2015-144

Spotlight - Moderately Critical - Cross Site Scripting - SA-CONTRIB-2015-142

Ctools - Critical - Multiple Vulnerabilities - SA-CONTRIB-2015-141

Workbench Email - Moderately Critical - Access bypass - DRUPAL-SA-CONTRIB-2015-139


Subscribe with RSS Subscribe to Security advisories for contributed projects