XenForo 2.1.11 Released (Security Fix)

  • Thread starter Thread starter XenForo
  • Start date Start date
X

XenForo

Guest
Today, we are releasing XenForo 2.1.11 to address a potential security vulnerability. We recommend that all customers running XenForo 2.1 upgrade to 2.1.11 or use the attached patch file as soon as possible. (For customers running XenForo 2.0, we can only recommend upgrading to the latest version.)

The issue is a cross site request forgery (CSRF) on the login form. This may allow an attacker to unexpectedly log users into an attacker-controlled account. In some scenarios, this may cause...

Read more

Continue reading...
 
Top