Two vulnerabilities have been reported in Gallete, which can be exploited by malicious people to conduct SQL injection attacks.
For more information:
SA61360
SA63055
The vulnerabilities are reported in version 0.8.1. Prior version may also be affected.
Vulnerable Products
Vulnerable Software: Galette 0.x
Solution
Fixed in the SVN repository. Update to version 0.8.2 when available.