It looks like you're new here. If you want to get involved, click one of these buttons!
There is an XSS vulnerability in Vanilla, version 2.0.18.2 and earlier. This only effects the Flagging plugin. Anyone using the Flagging plugin should immediately upgrade to 2.0.18.3 or make this change: Fix for Flagging XSS.
2.0.18.3 is now available.
Comments
thanks so much for letting us know, forwarded to others I know use this.
Don't PM about development, I'm not currently taking on clients.
grep is your friend.
- Spam
- Abuse
- Troll
2 • Off Topic Insightful 2Awesome LOL •Awesome to know, thank you.
- Spam
- Abuse
- Troll
0 • Off Topic Insightful Awesome LOL •Was this the only change in 2.0.18.3?
- Spam
- Abuse
- Troll
0 • Off Topic Insightful Awesome LOL •Yes.
Developer at Vanilla Forums, Inc. [GitHub, Twitter]
- Spam
- Abuse
- Troll
0 • Off Topic Insightful Awesome LOL •that's great. thank!
- Spam
- Abuse
- Troll
0 • Off Topic Insightful Awesome LOL •