drupal 7.56

Security update
Insecure

Maintenance and security release of the Drupal 7 series.

This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the notes below and the security announcement:

No other fixes are included.

drupal 8.3.4

Security update
Insecure

Maintenance and security release of the Drupal 8 series.

This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the notes below and the security announcements:

No other fixes are included.

search404 7.x-1.5

Security update

See Search404 - Moderately Critical - Cross Site Scripting - SA-CONTRIB-2017-053

Fixes the security vulnerabilities in Search404 - Lack of sanitisation in `search404_page_text` variable

All 7.x releases of Search404 are affected. It is recommended that all users upgrade to latest version.

ldap 7.x-2.2

Security update

Fixes the security vulnerabilities in LDAP - Critical - Data Injection -SA-CONTRIB-2017-052.

All 2.x releases of LDAP are affected, users are strongly recommended to upgrade.

ldap 8.x-3.0-beta2

Security update
Bug fixes

Known limitations:

  • LDAP Views integration is still incomplete
  • You cannot install ldap_user with a default language other than English. Switch your site before installing this module, see also https://www.drupal.org/node/2837074
  • Test coverage is still very limited and thus regressions are more likely than we would like.
  • If you use authorization, you will likely want to use the patches in these issues:

    Pages

    Subscribe with RSS Subscribe to RSS - Security update