1.5K | Posts |
65.5K | Downloads |
16 | Plugins |
A critical vulnerability has been discovered in PHPmailer, a thirdparty component used by Typesetter CMS.
The current version 5.2.14 which is implemented in Typesetter CMS should be updated IMMEDIATELY to 5.2.21
HowTo:
Links:
95 | Posts |
5 | Posts |
1.5K | Posts |
65.5K | Downloads |
16 | Plugins |
… other way to be notified of security issues which should be addressed in between Typesetter upgrades?
Although we had 2 such cases in 2016, they are fortunaltely very rare with Typesetter.
So, to answer your question, there is yet no official channel for that purpose.
If Josh would add a 'Security' forum chapter, anyone could follw it. Should be considered IMO.
For the time being, you could subscribe to my blog feed on my Typesetter Addons page -> http://typesetter-addons.grafikrausz.at/Blog_Feed
While this blog is meant to announce new addon versions, I do also post security issues there (of course I can only report things I'm aware of).
29 | Posts |
1.5K | Posts |
65.5K | Downloads |
16 | Plugins |
if these files have be added and are now part of the latest full Typesetter 5.0.3 installation zip download?
No. Thomas issued a pull request on GitHub but it has not been merged yet.
You will have to fix every new installation manually until Typesetter 5.0.4 (or whatever version) will be released.
14 | Posts |
Thanks for bringing this up! I got a security message from Gentoo (the linux distro I use) about this vulnerability, but I didn't realize phpmailer is part of Typesetter. Worth noting as well is that at least one Typesetter addon "Special Contact Form" also includes phpmailer.
It would be a good idea for anyone to search for these four files on their webserver, if running multiple sites, multiple software, etc.
A new release for Typesetter is in the works with a lot of improvements including the ... Read More
Typesetter 5.1Typesetter 5.1 is now available for download. 5.1 includes bug fixes, UI/UX improvements, ... Read More
More News
What CMS: Find out what CMS a site is using.
Who Hosts This: Find out who is hosting any web site
WordPress Theme Detect: Find out which theme a WordPress site is using