Tue, 12 Jul 2011 22:13:37 -0400 | Dan Fuhry | SECURITY: Fixed several XSS vulns reported by Secunia, mostly in Private Messaging. Also backported CSRF protection API from 1.1.x, and protected Private Messaging and logout functions. | file | diff | annotate |
Tue, 16 Nov 2010 12:19:13 -0500 | Dan Fuhry | SECURITY: Fix SQL injection in banlist check | file | diff | annotate |