Drupal 6.23, 6.24, 7.11, and 7.12 were released on Wednesday. Drupal 6.23 and 7.11 include fixes for a cross site request forgery (CSRF) vulnerability in the Aggregator module and a verification issue related to OpenID. Drupal 7.11 also includes a fix for an access bypass vulnerability in the File module. Drupal 6.24 and 7.12 include bug fixes in addition to the security vulnerability fixes included in 6.23 and 7.11.
More information is available in the security advisory and the release notes for 6.23, 6.24, 7.11, and 7.12.