 mydms      - open-source document management system based on PHP and MySQL
 mydms (1.4.4+1-5) unstable; urgency=high
   * Security: SQL Injection could be done changing cookies content if the 
   userID is not checked to be numeric only (Thanks to Rolan Benavent from 
   Dulasoft SL)
   * Security: SQL Injection could be done as result of an incorrect checking
   order in sanitize function.
