* Advisory ID: DRUPAL-SA-CONTRIB-2017-054
* Project: Services (third-party module)
* Version: 7.x
* Date: 2017-June-28
* Security risk: 19/25 ( Critical)
* Vulnerability: SQL Injection
This module provides a standardized solution for building API's so that
external clients can communicate with Drupal.
The module doesn't sufficiently sanitize column names provided by the client
when they are querying for data and trying to sort it.