Forum
Welcome, Guest
Please Login to access forum.
Released version 2.1 of JChatSocial FIX XSS issue (1 viewing) 
Go to bottom
TOPIC: Released version 2.1 of JChatSocial FIX XSS issue
#360
John Dagelmore
Admin
Posts: 3722
User Offline
Released version 2.1 of JChatSocial FIX XSS issue Karma: 79  
New version of JChatSocial 2.1 and 2.2 has been released!

It adds security layer and fix for XSS during file upload for filename, so you need to update immediately your previous version on your Joomla site.

In some cases using bad file names a XSS effect was possible, to fix this vulnerability a filtering for file names has been added using Joomla JInput class.


New features and improvements continue to be added.

Latest features include:

    Messages history
    Chat custom position using Joomla modules
    Bad words filtering
    IP address banning
    More flexible configuration, include/exclude private or public chat as you prefer
 
Logged Logged  
  The administrator has disabled public write access.
Go to top