|
Jun 07
Joomla 1.5.11 Security release is out! Upgrade now! |
|
|
The new released Joomla 1.5.11 was released on 03 June 2009, and contains 26 fixes, most security related issues.
There are several important fixes, just to mention:
Joomla! is prone to multiple cross-site scripting and HTML-injection vulnerabilities because the application fails to sufficiently sanitize user-supplied input. These issues affect the 'com_user' component, the 'JA_Purity' template, and the administrative panel in the 'Site client' subproject of the application.
An attacker can exploit these issues to steal cookie-based authentication credentials and launch other attacks.
Versions prior to Joomla!1.5.11 are vulnerable.
There are other fixes regarding several RSS feeds related issues in 1.5.10 and prior.
Users are strongly encouraged to update their websites to the latest release following these instructions:
http://docs.joomla.org/Upgrading_1.5_from_an_existing_1.5x_version
|
|
|