node_export 5.x-2.3

Security update

Correctly advises administrators about the PHP access they are giving to users with "import nodes" permission.

node_export 6.x-2.19

Security update

Correctly advises administrators about the PHP access they are giving to users with "import nodes" permission.

menu_breadcrumb 6.x-1.3

Security update

Menu Breadcrumb menu title XSS (cross-site scripting) issue on admin page fix

signwriter 5.x-1.6

Security update
New features
Bug fixes

#334534 by open-keywords - Various bug fixes
#342284 - Added option to disable display: none for SEO reasons
#342040 by pivica - Fixed typo in a drupal_set_message call
* SECURITY FIX - Fixed a security bug that allows arbitrary PHP code to be executed when using a signwriter
profile as an input filter, leading to a Cross Site Scripting vulnerability.
Any users with the ability to use input filters with signwriter profiles are able to exploit this vulnerability.

signwriter 6.x-2.0-beta2

Security update
Bug fixes

* Added php version to info file to restrict to version 5 and up due to the use of features not available in php4.
- See #591800: Parse error: syntax error, unexpected '=', expecting ')' in /sites/all/modules/signwriter/signwriter.module on line 532
* SECURITY FIX - Fixed a security bug that allows arbitrary PHP code to be executed when using a signwriter

Pages

Subscribe with RSS Subscribe to RSS - Security update