Mon. 14th November, 2016
It has been discovered that the extension "Secure Download Form" (rs_securedownload) is susceptible to Cross Site-Scripting.
This is a companion discussion topic for the original entry at https://typo3.org/article/cross-site-scripting-in-extension-secure-download-form-rs-securedownload/