Secunia Security Advisory – Some vulnerabilities have been reported in the Bubbletimer module for Drupal, which can be exploited by malicious people to bypass certain security restrictions and conduct cross-site request forgery attacks, and by malicious users to conduct script insertion attacks.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/79571/sa35959.txt
Source: https://packetstormsecurity.com/files/79571/Secunia-Security-Advisory-35959.html

