Refs: CVE-2008-0465, MILW0RM:4980 NVD received an email from the vendor, clarifying that only 0.6.3 is affected, and it's Seagull, not the "PHP Framework" (str0ke, you say "<= 0.6.3"). Acknowledgement is also here: http://seagullproject.org/publisher/articleview/action/view/frmArticleID/98/ - Steve