Security Humhub 0.10.0-rc.1 Cross Site Scripting / SQL Injection December 9, 2014 007admin Leave a comment Humhub versions 0.10.0-rc.1 and below suffer from cross site scripting and remote SQL injection vulnerabilities.