drupal 7.16

Security update
Insecure

Maintenance and security release of the Drupal 7 series.

This release fixes security vulnerabilities. Sites are urged to upgrade immediately after reading the security announcement:

No other fixes are included.

No changes have been made to the .htaccess, robots.txt or settings.php files in this release, so upgrading custom versions of those files is not necessary.

search_api 7.x-1.3

Security update
New features
Bug fixes
Insecure

See SA-CONTRIB-2012-156 - Search API - Cross Site Request Forgery (CSRF)

This is a security release, containing an important security fix. Users of the project are strongly encouraged to update to this version as soon as possible.
In older versions, the “enable server” and “enable index” functionalities aren't properly guarded against CSRF attacks, leading to an attacker being able to enable any disabled server and all disabled indexes that are connected to a server. See the security advisory for details.

payment 7.x-1.0-beta3

Security update
Bug fixes
Insecure

This is the third beta release. Major new features are postponed until Payment 7.x-2.x. Only bug fixes and minor improvements will continue to be added to 7.x-1.x.

Remember to run the update script (update.php) when upgrading to this version from 7.x-1.0-beta1.

Changes since version 7.x-1.0-beta2:

sharethis 7.x-2.5

Security update
Bug fixes

Pages

Subscribe with RSS Subscribe to RSS - Security update