Secunia Security Advisory – Some vulnerabilities have been reported in Redmine, which can be exploited by malicious people to conduct cross-site scripting and cross-site request forgery attacks.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/82813/sa37420.txt
Source: https://packetstormsecurity.com/files/82813/Secunia-Security-Advisory-37420.html

