Magento has published a software update that covers security issues.
Magento Community Edition 1.9.2.4 (merch.docs.magento.com)
We are pleased to bring you Magento Community Edition 1.9.2.4, which bundles improvements for issues reported by our merchants after installing the latest patch SUPEE-7405, or Magento Community Edition Release 1.9.2.3.
Important! Use Magento Community 1.9.2.4 or later for all new installations and upgrades to ensure that you have the latest fixes, features, and security updates.
Patch Bundle (SUPEE-7405 v.1.1)We highly recommend that all users of Magento Community Edition 1.9.0.x either install the SUPEE-7405 v 1.1 patch bundle, or upgrade to Magento Community Edition 1.9.2.4.
and:
SUPEE-7405 (magento.com)
Updated versions of this release are now available. The updates add support for PHP 5.3 and address issues with upload file permissions, merging carts, and SOAP APIs experienced with the original release. They DO NOT address any new security issues.
The previous release was on January 21, 2016.
Our Website Maintenance Department will be in contact with our clients regarding this upgrade.
-Tony