Security advisories for third-party projects that are not part of Drupal core - this includes all module, themes, and install profiles that have been contributed by a community member. These posts by the Drupal security team are also sent to the security announcements e-mail list.

Views refresh - Moderately Critical - Access Bypass - DRUPAL-SA-CONTRIB-2017-069

Views - Moderately Critical - Access Bypass - DRUPAL-SA-CONTRIB-2017-068

Facebook Like Button - Moderately Critical - XSS - DRUPAL-SA-CONTRIB-2017-066

Session Cache API - Critical - Multiple vulnerabilities - DRUPAL-SA-CONTRIB-2017-065

Better field descriptions - Critical - XSS - SA-CONTRIB-2017-064


