What's new

XenForo 2.0.3 Released - Includes Security Fix

A

Alvin

Guest
#1
Most importantly, this release includes a fix for a security issue that was reported to us by Julien from RCE Security. The issue was not found within XF code itself, but instead a file which we previously included with XF 1.5.x within the Video JS library. The issue is known as an "authentication phishing" exploit which involves posting a specially crafted URL pointed at the Video JS SWF file. This specially crafted URL, when clicked on or embedded in a page, can include another URL which...

XenForo 2.0.3 Released - Includes Security Fix

Continue reading...
 

Advertising