Skip to main content

This site requires you to update your browser. Your browsing experience maybe affected by not having the most up to date version.

We've moved the forum!

Please use forum.silverstripe.org for any new questions (announcement).
The forum archive will stick around, but will be read only.

You can also use our Slack channel or StackOverflow to ask for help.
Check out our community overview for more options to contribute.

Blog Module /

Discuss the Blog Module.

Moderators: martimiz, Sean, Ed, biapar, Willr, Ingo, swaiba

Blog 0.2.1 - recommended security release


Go to End


2 Posts   8305 Views

Avatar
Sam

Administrator, 690 Posts

8 July 2009 at 7:27pm

Edited: 08/07/2009 8:40pm

We have a new release of the blog module available: 0.2.1

Download here: http://www.silverstripe.org/assets/modules/stable/blog-v0.2.1.tar.gz
Post bug reports here: http://open.silverstripe.org

This release fixes an issue that came to the attention of the SilverStripe development team in the last couple of days. They could potentially let malicious users bypass the CMS security. For this reason, we strongly recommend that you upgrade all of your sites that use the blog module.

The security fix is the only difference between 0.2.0 and 0.2.1, so the upgrade should be straightforward.

Avatar
Mo

Community Member, 541 Posts

18 July 2009 at 4:32am

I think I may have encountered a bug with this, though I am not sure.

Would, you prefer I report it here or via Track?

Mo