Debian Security Advisory 1818-1 – Laurent Almeras and Guillaume Smet have discovered a possible SQL injection vulnerability and cross-site scripting vulnerabilities in gforge, a collaborative development tool. Due to insufficient input sanitising, it was possible to inject arbitrary SQL statements and use several parameters to conduct cross-site scripting attacks.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/78530/dsa-1818-1.txt
Source: https://packetstormsecurity.com/files/78530/Debian-Linux-Security-Advisory-1818-1.html

