Home

drupal.ls.net

Navigation

  • About
  • Blogs
  • Contact
  • Forums
  • Image galleries
  • Log in
  • Feed aggregator
    • Categories
    • Sources
Home Feed aggregator Sources
    • Drupal
    • LSNet

Core security advisories

  • SA-CORE-2010-002 - Drupal core - Multiple vulnerabilities
more

Contrib security advisories

  • SA-CONTRIB-2010-089 - Simplenews Content Selection - Cross Site Scripting
  • SA-CONTRIB-2010-088 - Content Construction Kit (CCK) - Access Bypass
  • SA-CONTRIB-2010-087 - GovDelivery - Cross site scripting
  • SA-CONTRIB-2010-086 - Prepopulate - Access Bypass
  • SA-CONTRIB-2010-085 - Pathauto - Cross Site Scripting
more

Drupal security announcements

  • PSA-2010-002 - Views - Administer views permission
  • PSA-2010-001: Policy on release versions and permissions
more

Drupal.org jobs feed

  • Marketing Website Developer | Western Governors University
  • Coder | Fidoli Bilişim Teknolojileri
  • Drupal developer | ubergig
  • Javascript developer | ubergig
  • Web Developer | MIT
more

Visit our client's websites

  • http://bridle-creek.com
  • http://demo.mydllurth.com
  • http://downtowngalax.com
  • http://drupal.ls.net
  • http://crossleft.org/
  • http://cuttingedgelaw.com/
  • http://new-river.dixongarner.com/
  • http://import.mydllurth.com
  • http://lyceum.mydllurth.com
  • http://mtvaleumc.org
  • http://news.mydllurth.com
  • http://oldcranks.com
  • http://psychguides.com
  • http://starbuck.net
  • http://stewartfurniture.com
  • http://tarvid.org
  • http://ubercart.ls.net
  • http://wolfeservices.net

Events

« September 2010
SunMonTueWedThuFriSat
1234
567891011
12131415161718
19202122232425
2627282930

Contrib security advisories

Syndicate content
URL: http://drupal.org/security/contrib
Updated: 1 hour 29 min ago

SA-CONTRIB-2010-089 - Simplenews Content Selection - Cross Site Scripting

Wed, 08/18/2010 - 15:51
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-089
  • Project: Simplenews content selection (third-party module)
  • Version: 6.x
  • Date: 2010-August-18
  • Security risk: Less critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting

read more

Categories: Security

SA-CONTRIB-2010-088 - Content Construction Kit (CCK) - Access Bypass

Wed, 08/11/2010 - 19:58
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-088
  • Project: Content Construction Kit (CCK) (third-party module)
  • Version: 6.x
  • Date: 2010-August-11
  • Security risk: Less Critical
  • Exploitable from: Remote
  • Vulnerability: Access Bypass

read more

Categories: Security

SA-CONTRIB-2010-087 - GovDelivery - Cross site scripting

Wed, 08/11/2010 - 18:36
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-087
  • Project: GovDelivery Integration (third-party module)
  • Version: 6.x
  • Date: 2010-Aug-11
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting

read more

Categories: Security

SA-CONTRIB-2010-086 - Prepopulate - Access Bypass

Wed, 08/11/2010 - 18:35
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-086
  • Project: Prepopulate (third-party module)
  • Version: 5.x and 6.x
  • Date: 2010-Aug-11
  • Security risk: Moderately Critical
  • Exploitable from: Remote
  • Vulnerability: Access Bypass

read more

Categories: Security

SA-CONTRIB-2010-085 - Pathauto - Cross Site Scripting

Wed, 08/11/2010 - 16:31
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-085
  • Project: Pathauto (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-August-11
  • Security risk: Less critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

read more

Categories: Security

SA-CONTRIB-2010-084 - OpenID - Authentication bypass

Wed, 08/11/2010 - 15:55
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-084
  • Project: OpenID (third-party module)
  • Version: 5.x
  • Date: 2010-Aug-11
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Authentication bypass

read more

Categories: Security

SA-CONTRIB-2010-083 - Ubercart sub-modules - Multiple Vulnerabilities

Wed, 08/11/2010 - 14:39
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-083
  • Project: UC2Checkout, UCPaypal, UC Cart LInks (third-party modules in the Ubercart Project)
  • Version: 5.x, 6.x
  • Date: 2010-Aug-11
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Access Bypass, Cross Site Request Forgery

read more

Categories: Security

SA-CONTRIB-2010-082 - Print - Local file read access

Wed, 08/11/2010 - 14:35
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-082
  • Project: Printer, e-mail and PDF versions (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-August-11
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Local file read access

read more

Categories: Security

SA-CONTRIB-2010-081 - FileField Sources - Arbitrary Code Execution

Wed, 08/11/2010 - 14:31
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-081
  • Project: FileField Sources (third-party module)
  • Version: 6.x
  • Date: 2010-May-19
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Arbitrary Code Execution

read more

Categories: Security

SA-CONTRIB-2010-080 - Privatemsg - Cross Site Scripting

Wed, 08/11/2010 - 09:07
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-080
  • Project: Privatemsg (third-party module)
  • Version: 6.x
  • Date: 2010-August-11
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Cross-Site Scripting

read more

Categories: Security

SA-CONTRIB-2010-079 - Devel (Performance logging) - Cross Site Scripting

Wed, 08/04/2010 - 18:39
  • Advisory ID: SA-CONTRIB-2010-079
  • Project: Devel (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-Aug-04
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

read more

Categories: Security

SA-CONTRIB-2010-078 - Kaltura - Information disclosure

Wed, 07/28/2010 - 18:38
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-078
  • Project: Kaltura (third-party module)
  • Versions: 5.x, 6.x
  • Date: 2010-July-28
  • Security risk: Less Critical
  • Exploitable from: Remote
  • Vulnerability: Information disclosure

read more

Categories: Security

SA-CONTRIB-2010-077 - Sage Pay (former Protx) Direct Payment Gateway for Ubercart - Information Disclosure

Wed, 07/28/2010 - 13:25
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-077
  • Project: Sage Pay Direct Payment Gateway for Ubercart (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-July-28
  • Security risk: Less Critical
  • Exploitable from: Remote
  • Vulnerability: Information Disclosure

read more

Categories: Security

SA-CONTRIB-2010-076 - Dashboard - Cross Site Scripting (CSS)

Wed, 07/28/2010 - 12:11
  • Advisory ID: SA-CONTRIB-2010-076
  • Project: Dashboard (third-party module)
  • Version: 6.x
  • Date: 2010-July-28
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

read more

Categories: Security

SA-CONTRIB 2010-075 - Tagging - Cross Site Scripting

Wed, 07/21/2010 - 14:03
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-075
  • Project: Tagging (third-party module)
  • Version: 6.x
  • Date: 2010-July 21
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

read more

Categories: Security

SA-CONTRIB-2010-074 - Drupad - Cross-site request forgery

Wed, 07/14/2010 - 16:46
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-074
  • Projects: Drupad (third-party module)
  • Version: 6.x
  • Date: 2010-07-14
  • Security risks: Critical
  • Exploitable from: Remote
  • Vulnerability: CSRF

read more

Categories: Security

SA-CONTRIB-2010-073 - Multiple Vulnerabilities In Multiple Contributed Modules

Wed, 07/14/2010 - 16:27
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-073
  • Projects: Multiple third party modules - Simple Gallery, OG Menu, Tell A Friend Node, JsMath For Displaying Mathematics With TeX
  • Version: 5.x, 6.x
  • Date: 2010-July-14
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Multiple (Cross Site Scripting, Email Header Injection)

read more

Categories: Security

SA-CONTRIB-2010-072: Hierarchical Select - Cross Site Scripting

Wed, 07/07/2010 - 12:38
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-0XX
  • Project: Hierarchical Select (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-July-07
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

read more

Categories: Security

SA-CONTRIB-2010-071 - MultiSafepay Integration - Cross Site Request Forgery

Wed, 07/07/2010 - 11:53
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-071
  • Project: MultiSafepay Integration (third-party module)
  • Version: 6.x
  • Date: 2010-July-07
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Request Forgery

read more

Categories: Security

SA-CONTRIB-2010-070 - Multiple vulnerabilities in multiple contributed modules

Wed, 06/23/2010 - 16:48
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-070
  • Projects: Multiple third party modules - Easy Translator, Block Queue, Multiple Image Upload (Imagex)
  • Version: 5.x, 6.x
  • Date: 2010-06-23
  • Security risks: Critical
  • Exploitable from: Remote
  • Vulnerability: Multiple (SQL Injection, CSRF, Access bypass)

read more

Categories: Security
  • 1
  • 2
  • 3
  • next ›
  • last »

User login

What is OpenID?
  • Log in using OpenID
  • Cancel OpenID login
  • Create new account
  • Request new password
Powered by Drupal, an open source content management system
RoopleTheme