0006696: [6. ------ Setup -------] Guestbook option remains in footer settings of the Flow theme (anton.fedurtsya)
0006973: [4.04. Security] Admin: File upload extension filter can be bypassed (lambreva)
0006890: [4.04. Security] SQL injections possible in admin interface (Nikola Ivanovski)
0006974: [4.04. Security] Parameters are not escaped in RDFa payment data (Nikola Ivanovski)
0006939: [1.03. Basket, checkout process] Payment method Direct debit no complete check of BIC. A blank character is sufficient here to recognize the form data as valid. (farzam.tahmasebmirza)
0006827: [6. ------ Setup -------] Upgrade CE/PE to EE leads to empty article list in backend (farzam.tahmasebmirza)
0006925: [6. ------ Setup -------] EE only. Two user groups have the same RR id. (anton.fedurtsya)
0006793: [6. ------ Setup -------] Setup folder is copied on every "composer update" although Setup was already executed (anton.fedurtsya)
