XenForo 2.1.11 Released (Security Fix)

  • Participants

EAE Add-ons

Site Info
Staff member
Threads
43
Messages
43
    • Site Info
    • Administrator
  • Thread starter
  • #1
Today, we are releasing XenForo 2.1.11 to address a potential security vulnerability. We recommend that all customers running XenForo 2.1 upgrade to 2.1.11 or use the attached patch file as soon as possible. (For customers running XenForo 2.0, we can only recommend upgrading to the latest version.)

The issue is a cross site request forgery (CSRF) on the login form. This may allow an attacker to unexpectedly log users into an attacker-controlled account. In some scenarios, this may cause...

Read more

Continue reading...
 
Top