Description
	  SECURITY-170 / CVE-2016-3721
	  Arbitrary build parameters are passed to build scripts as environment variables
	  SECURITY-243 / CVE-2016-3722
	  Malicious users with multiple user accounts can prevent other users from logging in
	  SECURITY-250 / CVE-2016-3723
	  Information on installed plugins exposed via API
	  SECURITY-266 / CVE-2016-3724
	  Encrypted secrets (e.g. passwords) were leaked to users with permission to read configuration
	  SECURITY-273 / CVE-2016-3725
	  Regular users can trigger download of update site metadata
	  SECURITY-276 / CVE-2016-3726
	  Open redirect to scheme-relative URLs
	  SECURITY-281 / CVE-2016-3727
	  Granting the permission to read node configurations allows access to overall system configuration