check_plain() and check_markup() is added to avoid XSS.
SA-CONTRIB-2013-027 - Professional theme - Cross Site Scripting (XSS)
Security release SA-CONTRIB-2012-127 - Custom Publishing Options - Cross Site Scripting (XSS) Vulnerability
Fix for SA-CONTRIB-2013-031
Contains security updates to the contributed CTools and MimeMail modules.
SA-CONTRIB-2013-032 - Company theme - Cross Site Scripting (XSS)