check_plain() is added to avoid the XSS.
SA-CONTRIB-2013-028 - Responsive Blog Theme - Cross Site Scripting (XSS)
Fix for SA-CONTRIB-2013-026
Fix for SA-CONTRIB-2013-024
Fixes XSS and CSRF vulnerabilities and tightens up SQL parameters using placeholders as well. Also introduces support for table prefixes.
Release Notes for 7.x-3.0
Changes since 7.x-3.0-Beta3: