It looks like you're new here. If you want to get involved, click one of these buttons!
There is an XSS vulnerability in Vanilla, version 2.0.18.2 and earlier. This only effects the Flagging plugin. Anyone using the Flagging plugin should immediately upgrade to 2.0.18.3 or make this change: Fix for Flagging XSS.
2.0.18.3 is now available.
Comments
thanks so much for letting us know, forwarded to others I know use this.
Don't PM about development, I'm not currently taking on clients.
grep is your friend.
- Spam
- Abuse
2 · Insightful 2Awesome LOL ·Awesome to know, thank you.
- Spam
- Abuse
0 · Insightful Awesome LOL ·Was this the only change in 2.0.18.3?
- Spam
- Abuse
0 · Insightful Awesome LOL ·Yes.
Developer at Vanilla Forums, Inc. [GitHub, Twitter]
- Spam
- Abuse
0 · Insightful Awesome LOL ·that's great. thank!
- Spam
- Abuse
0 · Insightful Awesome LOL ·