See SA-CONTRIB-2015-054 - SMS Framework - Cross Site Scripting (XSS).
See Administration Views - Moderately Critical - Access Bypass - SA-CONTRIB-2015-122.
Security update, not other changes. See SA-CONTRIB-2015-052 - RESTful Web Services - Access Bypass
This includes a fix for a moderately critical security vulnerability. You can learn more in the security advisory:
SA-CONTRIB-2015-047 - Panopoly Magic - Cross Site Scripting (XSS).
Changes since 7.x-1.16:
This is a security release to prevent a Cross Site Scripting (XSS) vulnerability. When displaying taxonomy terms the module now ensures that they are correctly filtered plain text.