Topics from May 2012 KORAMISADV2012-001 - Serendipity 1.6 Backend Cross-Site Scripting and SQL-Injection vulnerability Posted by Stefan Schurtz on Tuesday, May 8. 2012 SSCHADV2012-012 - Baby Gekko v1.2.0 Multiple XSS vulnerabilities Posted by Stefan Schurtz on Sunday, May 6. 2012