persistent_login 8.x-1.8
Persistent Login - Moderately critical - Access bypass - SA-CONTRIB-2024-044
- Cleanup tokens of disabled users
Persistent Login - Moderately critical - Access bypass - SA-CONTRIB-2024-044
Fix a bug which could theoretically result in incorrect group membership for the anonymous user being returned in certain rare circumstances
Monster Menus - Moderately critical - Access bypass, Information Disclosure - SA-CONTRIB-2024-045
The module doesn't sufficiently protect access to certain paths provided by the module. If you use the Smart IP Ban module for Drupal 7.x, upgrade to Smart IP Ban 7.x-1.1.
See Smart IP Ban - Critical - Access bypass - SA-CONTRIB-2024-042.
New in 7.x-3.0-beta25:
New in 7.x-3.0-beta24:
Resolves SA-CONTRIB-2024-001.
New in 7.x-3.0-beta23:
PHP 8.2 compatibility fix.
[#3175010]
[#3327337]
New in 7.x-3.0-beta22:
Improved support for PHP 8.1
[#3267961]
New in 7.x-2.39:
New in 7.x-2.38:
Resolves SA-CONTRIB-2024-001.
New in 7.x-2.37:
PHP 8.2 compatibility fix.
[#3175010]
[#3327337]
New in 7.x-2.36:
PHP 8.1 compatibility fix
[#3267961]
Eventhough this is an alpha version, this release covers both:
Open Social - Moderately critical - Cross Site Scripting, Denial of Service - SA-CONTRIB-2024-037
Open Social - Moderately critical - Denial of Service - SA-CONTRIB-2024-038