This release fixes a security bug that allowed a SQL injection.

More info here:
http://forums.oscommerce.com/index.p...c=254845&st=80

and:
http://www.bisente.com/blog/2007/07/...d/?lan=english

More...