Forum plugin 2.7.3 security fix
- Sunday, May 02 2010 @ 04:45 am EDT
- Contributed by: Dirk
- Views: 8,990
The Forum plugin 2.7.3 addresses a security issue where an XSS was possible in anonymous usernames, reported by Jaloh Smith.
To upgrade from version 2.7.2, you only need to replace 3 files:
- config.php (for the version number)
- functions.inc (for the upgrade code)
- public_html/createtopic.php (which contains the actual fix)
Then simply run the upgrade from Geeklog's Plugin admin panel.