OpenMRS 2.1 Access Bypass / XSS / CSRF

OpenMRS version 2.1 suffers from access bypass, cross site request forgery, and cross site scripting vulnerabilities.