psa

  1. PaulB

    PSA: ImageMagick information disclosure vulnerability CVE-2022-44268

    ImageMagick just released a patch for a serious information disclosure vulnerability. I haven't tested whether this affects XenForo, but it probably does. You should disable ImageMagick and use GD instead, if possible; ImageMagick is prone to serious vulnerabilities. If that isn't an option...
  2. PaulB

    PSA for any sites on MySQL 8.0.29: Data corruption, incl. backups

    This isn't directly a XenForo issue, but it will affect any XenForo sites using MySQL 8.0.29. As far as I'm aware, MariaDB is not affected. Only 8.0.29 is affected; older and newer versions are in the clear. MySQL 8.0.29 was released 2022-04-26, so if you haven't updated since then, you're...
Top Bottom