On Mon 21. 11. 2005 01:14, Michal Čihař wrote:
another point on security: some of issues that has been fixed in "normal" release do not have security announcement, this should be also fixed.
Eh, I just found one :-). XSS in index.php on HTTP_HOST...