bbPress 2.6.4 is a security release, and fixes 8 total issues reported by our amazing, patient, and vigilant community members:
- Fixes an obscure security issue with BuddyPress Group Forums, allowing Group Members to save Topics to invalid Forum IDs
- Fixes performance degradation for 2.5 database schemas
- Fixes a few typos
- Fixes some debug notices
- Fixes user email changes using the wrong API
- Improves compatibility with PHP 7.2 and higher
Special thanks to Yuvraj Dighe for his responsible disclosure of the BuddyPress Group Forums bug over at HackerOne. Thank you for helping improve bbPress.
Work continues on improving bbPress 2.6 while also doing a bit more clean-up for 2.7.
Expect for the next minor release (bbPress 2.6.5) to be released sometime before March 1.
发表回复