+ Added Session fixation vulnerability.
- Removed admin/mail.php vulnerability (dupe with login.php bypass vulnerability)

More...