Phorum 5.1.19 Released
Posted by Brian Moon
January 26, 2007 03:49PM |
Admin Registered: 24 years ago Posts: 4,495 |
While dealing with a bogus error report about an XSS issue in register.php, Oliver Riesen found an issue in the group moderation control center page. While I could not get it to be used as an XSS exploit, I am erring on the side of caution and assuming some other evil minded person could. So, that is why the Phorum 5.1.19 is released. This only affected you if you had the user dropdown list enabled. It is not enabled by default.
We are happy to announce the release of 5.1.18. This is a bug fix release. There were over 40 fixes in this version in all. Some notable fixes include an XSS issue found by Maurice, some MySQL 5 fixes, message counting performance fix and some fixes for vroots. The XSS issue was in the core. You don't need to change your templates.
Edited 3 time(s). Last edit at 03/08/2007 12:33PM by ts77.
We are happy to announce the release of 5.1.18. This is a bug fix release. There were over 40 fixes in this version in all. Some notable fixes include an XSS issue found by Maurice, some MySQL 5 fixes, message counting performance fix and some fixes for vroots. The XSS issue was in the core. You don't need to change your templates.
Brian - Cowboy Ninja Coder - Personal Blog - Twitter
Edited 3 time(s). Last edit at 03/08/2007 12:33PM by ts77.
Re: Phorum 5.1.18 Released January 28, 2007 08:09AM |
Registered: 19 years ago Posts: 14 |
Re: Phorum 5.1.18 Released January 28, 2007 08:18AM |
Admin Registered: 22 years ago Posts: 9,240 |
Re: Phorum 5.1.18 Released January 28, 2007 08:48AM |
Registered: 19 years ago Posts: 14 |
Re: Phorum 5.1.18 Released January 28, 2007 08:50AM |
Admin Registered: 22 years ago Posts: 9,240 |
Re: Phorum 5.1.18 Released January 28, 2007 08:58AM |
Registered: 19 years ago Posts: 14 |
January 28, 2007 09:51AM |
Admin Registered: 20 years ago Posts: 8,532 |
That upgrade file is in the development trunk and not in 5.1. Did you ever try out a development 5.2 release on top of the 5.1 tree? Else I'm not sure how your setup would know about db upgrade 2006090700.
Maurice Makaay
Phorum Development Team
my blog
linkedin profile
secret sauce
Maurice Makaay
Phorum Development Team



Re: Phorum 5.1.18 Released January 28, 2007 11:31AM |
Registered: 19 years ago Posts: 14 |
Uuuuh, yes I did.
I uploaded 2006090700.php again and..... it works!
Thank you guys, think I´ll make a donate for the "Conference".
And Maurice, I use your google maps module, it´s great. (I made my every-day-pub a userlocation, hehe)
Have a nice day and thanx again, hjp
I uploaded 2006090700.php again and..... it works!
Thank you guys, think I´ll make a donate for the "Conference".
And Maurice, I use your google maps module, it´s great. (I made my every-day-pub a userlocation, hehe)
Have a nice day and thanx again, hjp
Re: Phorum 5.1.19 Released February 20, 2007 03:24AM |
Registered: 18 years ago Posts: 34 |
Re: Phorum 5.1.19 Released February 20, 2007 03:34AM |
Admin Registered: 22 years ago Posts: 9,240 |
February 20, 2007 03:35AM |
Admin Registered: 20 years ago Posts: 8,532 |
That's merely a matter of a configuration setting in the admin. The admin can choose whereto the user should be redirected after posting a message. So nothing to be alarmed about :-)
Maurice Makaay
Phorum Development Team
my blog
linkedin profile
secret sauce
Maurice Makaay
Phorum Development Team



Re: Phorum 5.1.19 Released February 20, 2007 03:42AM |
Registered: 18 years ago Posts: 34 |
lol, its been along time. I forget things =0p
I just (like 2 seconds ago) finished the installer script, which looks the same (except not yellow) so I haven't gotten to see the admin area much as of yet :-)
As for whats odd about it.. I guess its just something I'm not accustom to. I'm probably more odd than that being an oddity to anyone else =0D
[edit] That oddity makes more sense anyway [/edit]
Edited 1 time(s). Last edit at 02/20/2007 05:51AM by Fade2k.
I just (like 2 seconds ago) finished the installer script, which looks the same (except not yellow) so I haven't gotten to see the admin area much as of yet :-)
As for whats odd about it.. I guess its just something I'm not accustom to. I'm probably more odd than that being an oddity to anyone else =0D
[edit] That oddity makes more sense anyway [/edit]
Edited 1 time(s). Last edit at 02/20/2007 05:51AM by Fade2k.
Sorry, only registered users may post in this forum.