janrain_capture 6.x-1.1

Security update
Bug fixes
  • Resolved an open redirect issue DRUPAL-SA-CONTRIB-2012-098
  • Removed the theme template and replaced with raw output
  • Resolved access callbacks in hook_menu to appropriate access functions
  • Corrected xdcomm.js paths
  • Per-user, encrypt the refresh_token stored in the session data

nodehierarchy 6.x-1.5

Security update
Bug fixes

Fixed XSRF issue which potentially allowed malicious users to craft a link which could change the order of a node's children if accidentally visited by a site admin. See SA-CONTRIB-2012-099 - Node Hierarchy - Cross Site Request Forgery - CSRF

Pages

Subscribe with RSS Subscribe to RSS - 6.x