Vulnerabilities

    ZF2016-03 Potential SQL injection in ORDER and GROUP functions

    GMS-2016-65 Arbitrary password resets via NULL reset codes

    CVE-2012-6684 Textile Link Parsing XSS

    GMS-2016-64 Timing attack vulnerability

    GMS-2016-62 XSS vulnerability

    GMS-2016-63 Denial of Service

    GMS-2016-61 XSS via tooltips

    CVE-2014-3994 XSS Vulnerability in Djblets json_dumps()

    GMS-2016-60 Cross-Site Request Forgery

    SS-2016-015 XSS In OptionsetField and CheckboxSetField