Flyspray 0.9.9 allows remote malicious users to obtain sensitive information (private project summaries) via direct requests.
flyspray flyspray 0.9.9