login_one_time 7.x-2.10

Security update

Login one time - Moderately Critical - Cross Site Scripting (XSS) - SA-CONTRIB-2016-017

Issue #1761506 by ptmkenny, Rechi: Sent link should use users preferred language

Issue #1751336 by sysosmaster, Rechi: Translation of body and subject

Issue #1906510 by rogical: Add configure link

Fixes to "login_one_time_user_options" function.

deploy 7.x-2.0-beta2

Security update
Bug fixes

This release fixes a XSS vulnerability in the deploy_ui sub module caused by the module not sanitising output in the plan empty confirmation message. This vulnerability can only be exploited by users with the Administer Deployments permission and only impacts users with that permission who empty a plan created by a malicious user.

Pages

Subscribe with RSS Subscribe to RSS - Security update