pathauto 5.x-2.0-beta4

Security update
New features
Bug fixes
Insecure

This is primarily a security release in response to the token_values potential Cross Site Scripting issue. Pathauto on its own is not affected, but token values provided by Pathauto were not properly checked and may have caused a problem if used by another module (no known examples exist).

Other Changes since DRUPAL-5--2-0-BETA3:

token 4.7.x-1.5

Security update

This release is primarily to fix a potential Cross Site Scripting issue.

See the Security Announcement for more details.

token 5.x-1.9

Security update
Bug fixes

This release is primarily to fix a potential Cross Site Scripting issue.

See the Security Announcement for more details.

Changes since DRUPAL-5--1-8:

weblinks 4.7.x-1.0

Security update

Fix several XSS vulnerabilities (see DRUPAL-SA-2007-028) and a few potential sql issues.

weblinks 5.x-1.8

Security update

Fix several XSS vulnerabilities (see DRUPAL-SA-2007-028) and a few potential sql issues.

cck_fullname 5.x-1.1

Security update
New features
Bug fixes

Fixed usage of token support.

Pages

Subscribe with RSS Subscribe to RSS - Security update