Drupal is vulnerable to a cross site scripting attack, among other things. Drupal SA-2008-018: http://drupal.org/node/227608 Reproducible: Always Steps to Reproduce:
Web-apps, please bump.
in cvs, probably no need to stabilize, no stable version yet
No stable, [noglsa] then. Thanks!
can someone please add "CVE-2008-1131"? i dont have the needed permissions
same for CVE-2008-1133