Jump to content
Forum²

Recommended Posts

  • Forum² Admin
Posted

MyBB 1.6.13 is now available from the MyBB website and is a security and maintenance release.

What’s added/changed in this version?

This release fixes 4 vulnerabilities and 38 reported issues causing incorrect functionality of MyBB. Please be aware that to be able to provide easy to manage updates not all issues have been fixed in this version.

 

Vulnerabilities:

 

Medium Risk: Possibility of executing PHP code through stylesheets – reported by http://community.mybb.com/user-83062.html" target="_blank]TonyS

Medium Risk: Possibility of executing PHP code through language files – reported by http://community.mybb.com/user-8582.html" target="_blank]Pirata Nervo

Low Risk: A XSS vulnerability in search system (http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1840" target="_blank]CVE-2014-1840)

Low Risk: Potential weak random string generator reported by – reported by http://community.mybb.com/user-61715.html" target="_blank]1llusion

 

 

Bugs fixed:

 

http://docs.mybb.com/1613.html#Fixed_Issues]Fixed issues in 1.6.13

https://github.com/mybb/mybb/issues?labels=1.6&state=open]Unfixed issues

 

 

 

Please view the http://docs.mybb.com/1613.html" target="_blank]1.6.13 changes on the Docs site for more information about the changes in this version.

http://pixel.wp.com/b.gif?host=blog.mybb.com&blog=36724248&post=2118&subd=blogdotmybbdotcom&ref=&feed=1

 

View the full article

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...