We have had a XSS issue reported in a template.
The fix is available on github at https://github.com/Opmantek/open-audit/commit/7311d9799960a88d711c20ad0c2f8d8648d933e9
The XSS requires the user be logged in and click a malicious link sent by a third party.
Apologies for any inconvenience.
Mark.