Results 1 to 3 of 3

Thread: Major security hole found in Contao

  1. #1
    Community bot (no real user)
    Join Date
    09-06-13.
    Location
    Forum bot - no real user!
    Posts
    349

    Beitrag Major security hole found in Contao

    Unfortunately, there is now an exploit for the potential PHP object injection vulnerability, which we have prophylactically fixed with the latest updates to Contao 3.2.5 and 2.11.14.


    Read more about 'Major security hole found in Contao'...

  2. #2
    User
    Join Date
    06-20-09.
    Location
    Middlesbrough, UK
    Posts
    246

    Default

    Is this in all versions of Contao dating back to the first release? or are there some versions it doesn't affect?
    360fusion: Virtual Tours - Web Design
    Social Media: Twitter - Facebook Page

  3. #3
    Community-Moderator xchs's Avatar
    Join Date
    06-19-09.
    Posts
    1,287

    Default

    Yes, unfortunately all versions prior to 3.2.6 and 2.11.15 are affected.

    Fortunately, the guys from the Contao Community Alliance (CCA) have provided patch files even for older Contao versions. Stay tuned for the upcoming new patch files that will cope with the latest security hole which was found today.
    Last edited by xchs; 02/12/2014 at 21:25.
    Contao Community Moderator
    → Support options

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •