Fixes Elysia Cron - Critical - Arbitrary PHP code execution - SA-CONTRIB-2016-062
CSRF security fix - see SA-CONTRIB-2016-056
Maintenance and security release of the Drupal 7 series.
This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the notes below and the security announcement:
No other fixes are included.
Maintenance and security release of the Drupal 8 series.
Fixes Views Send - Moderately Critical - Cross Site Scripting (XSS) - SA-CONTRIB-2016-061
This is a security release and there are no functionality changes.
This release resolves DRUPAL-SA-CONTRIB-2015-057 as well as an XSS vulnerability. There are no other changes included in this release. These same security changes have been applied to the 7.x-2.x branch.