Security advisories http://drupal.org/security/core en SA-CORE-2009-007 - Drupal core - Multiple vulnerabilities http://drupal.org/node/507572 <ul> <li>Advisory ID: DRUPAL-SA-CORE-2009-007</li> <li>Project: Drupal core</li> <li>Version: 5.x, 6.x</li> <li>Date: 2009-July-1</li> <li>Security risk: Moderately critical</li> <li>Exploitable from: Remote</li> <li>Vulnerability: Multiple vulnerabilities</li> </ul> Security advisories for Drupal core Drupal 5.x Drupal 6.x Wed, 01 Jul 2009 20:56:35 +0000 Drupal Security Team 507572 at http://drupal.org SA-CORE-2009-006 - Drupal core - Cross site scripting http://drupal.org/node/461886 <ul> <li>Advisory ID: DRUPAL-SA-CORE-2009-006</li> <li>Project: Drupal core</li> <li>Version: 5.x, 6.x</li> <li>Date: 2009-May-13</li> <li>Security risk: Moderately critical</li> <li>Exploitable from: Remote</li> <li>Vulnerability: Cross site scripting</li> </ul> Security advisories for Drupal core Drupal 5.x Drupal 6.x Wed, 13 May 2009 19:47:10 +0000 Drupal Security Team 461886 at http://drupal.org SA-CORE-2009-005 - Drupal core - Cross site scripting http://drupal.org/node/449078 <ul> <li>Advisory ID: DRUPAL-SA-CORE-2009-005</li> <li>Project: Drupal core</li> <li>Version: 5.x, 6.x</li> <li>Date: 2009-April-29</li> <li>Security risk: Moderately critical</li> <li>Exploitable from: Remote</li> <li>Vulnerability: Cross site scripting</li> </ul> Security advisories for Drupal core Drupal 5.x Drupal 6.x Thu, 30 Apr 2009 01:48:10 +0000 Drupal Security Team 449078 at http://drupal.org New pages and RSS feeds for security announcements http://drupal.org/node/406142 <h3>Separate Security Announcements by Type</h3> <p>To make the impact of different security advisories and announcements easier to see, they are now separated by type.</p> <p>Drupal core security advisories: <a href="http://drupal.org/security" title="http://drupal.org/security" rel="nofollow">http://drupal.org/security</a><br /> RSS feed for Drupal core: <a href="http://drupal.org/security/rss.xml" title="http://drupal.org/security/rss.xml" rel="nofollow">http://drupal.org/security/rss.xml</a></p> <p>Contributed project security advisories: <a href="http://drupal.org/security/contrib" title="http://drupal.org/security/contrib" rel="nofollow">http://drupal.org/security/contrib</a><br /> RSS feed for contributed projects: <a href="http://drupal.org/security/contrib/rss.xml" title="http://drupal.org/security/contrib/rss.xml" rel="nofollow">http://drupal.org/security/contrib/rss.xml</a></p> <p>Public service announcements: <a href="http://drupal.org/security/psa" title="http://drupal.org/security/psa" rel="nofollow">http://drupal.org/security/psa</a><br /> RSS feed for announcements: <a href="http://drupal.org/security/psa/rss.xml" title="http://drupal.org/security/psa/rss.xml" rel="nofollow">http://drupal.org/security/psa/rss.xml</a></p> <p><em>We encourage those using RSS readers to track security-related developments to subscribe to all three of these feeds.</em></p> <p>All posts to each of these three forums will still be sent to the one security announcements e-mail list. To subscribe to that e-mail list, once logged in, go to your user profile page and subscribe to the security newsletter on the Edit » My newsletters tab.</p> <p>All future public service announcements will only be posted to the <em>Public service announcements</em> page and feed.</p> Security advisories for Drupal core Planet Drupal Wed, 18 Mar 2009 15:51:17 +0000 pwolanin 406142 at http://drupal.org SA-CORE-2009-004 - Local file inclusion on Windows http://drupal.org/node/384024 <ul> <li>Advisory ID: DRUPAL-SA-CORE-2009-004</li> <li>Project: Drupal core</li> <li>Versions: 5.x</li> <li>Date: 2009-February-25</li> <li>Security risk: Highly Critical</li> <li>Exploitable from: Remote</li> <li>Vulnerability: Local file inclusion on Windows</li> <li>Reference: <a href="http://drupal.org/node/383724" rel="nofollow">SA-CORE-2009-003</a> (6.x) </li></ul> Security advisories for Drupal core Drupal 5.x Wed, 25 Feb 2009 22:58:23 +0000 Drupal Security Team 384024 at http://drupal.org SA-CORE-2009-003 - Local file inclusion on Windows http://drupal.org/node/383724 <ul> <li>Advisory ID: DRUPAL-SA-CORE-2009-003</li> <li>Project: Drupal core</li> <li>Versions: 6.x</li> <li>Date: 2009-February-25</li> <li>Security risk: Highly Critical</li> <li>Exploitable from: Remote</li> <li>Vulnerability: Local file inclusion on Windows</li> </ul> Security advisories for Drupal core Drupal 6.x Wed, 25 Feb 2009 18:16:20 +0000 Drupal Security Team 383724 at http://drupal.org SA-CORE-2009-001 Drupal core - Multiple vulnerabilities http://drupal.org/node/358957 <ul> <li>Advisory ID: DRUPAL-SA-CORE-2009-001</li> <li>Project: Drupal core</li> <li>Versions: 5.x and 6.x</li> <li>Date: 2009-January-14</li> <li>Security risk: Moderately Critical</li> <li>Exploitable from: Remote</li> <li>Vulnerability: Multiple vulnerabilities</li> </ul> Security advisories for Drupal core Drupal 5.x Drupal 6.x Thu, 15 Jan 2009 00:00:22 +0000 Gábor Hojtsy 358957 at http://drupal.org SA-2008-073 - Drupal core - Multiple vulnerabilities http://drupal.org/node/345441 <ul> <li>Advisory ID: DRUPAL-SA-2008-073</li> <li>Project: Drupal core</li> <li>Versions: 5.x and 6.x</li> <li>Date: 2008-December-10</li> <li>Security risk: Moderately Critical</li> <li>Exploitable from: Remote</li> <li>Vulnerability: Multiple vulnerabilities</li> </ul> Security advisories for Drupal core Drupal 5.x Drupal 6.x Wed, 10 Dec 2008 21:42:40 +0000 Gábor Hojtsy 345441 at http://drupal.org SA-2008-067 - Drupal core - Multiple vulnerabilities http://drupal.org/node/324824 <ul> <li>Advisory ID: DRUPAL-SA-2008-067</li> <li>Project: Drupal core</li> <li>Versions: 5.x and 6.x</li> <li>Date: 2008-October-22</li> <li>Security risk: Less Critical</li> <li>Exploitable from: Local/Remote</li> <li>Vulnerability: Multiple vulnerabilities</li> </ul> Security advisories for Drupal core Drupal 5.x Drupal 6.x Wed, 22 Oct 2008 19:06:25 +0000 Gábor Hojtsy 324824 at http://drupal.org SA-2008-060 - Drupal core - Multiple vulnerabilities http://drupal.org/node/318706 <ul> <li>Advisory ID: DRUPAL-SA-2008-060</li> <li>Project: Drupal core</li> <li>Versions: 5.x and 6.x</li> <li>Date: 2008-October-8</li> <li>Security risk: Critical</li> <li>Exploitable from: Remote</li> <li>Vulnerability: Multiple vulnerabilities</li> </ul> Security advisories for Drupal core Drupal 5.x Drupal 6.x Wed, 08 Oct 2008 21:43:56 +0000 Gábor Hojtsy 318706 at http://drupal.org