Debian Security Advisory 1389-1 – It was discovered that zoph, a web based photo management system, performs insufficient input sanitizing, which allows SQL injection.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/60205/dsa-1389-1.txt
Source: https://packetstormsecurity.com/files/60205/Debian-Linux-Security-Advisory-1389-1.html

