From the Red
Hat bugzilla: Upstream Zend Framework 1.7.5 contains a security fix for
a potential Local File Inclusion (LFI) vulnerability in the
Zend_View::render() method. This fixed is tagged upstream as
"controversial", as it breaks backwards compatibility and existing uses of
method.