Current time: 05-24-2012, 11:50 AM Hello There, Guest! (LoginRegister)


Viewing Profile
09-22-2008, 10:54 AM (This post was last modified: 09-22-2008 11:04 AM by Tomm M.)
Post: #11
Solved: 1 Year, 7 Months, 3 Weeks, 1 Day, 21 Hours, 46 Minutes, 3 Seconds ago RE: Viewing Profile
Undecided

I'm guessing it's not intended, due to the fact it does work on here (yes, I did check before)...

It's strange, because looking at the changed files, it doesn't look as though anything has changed much... then again, I buggered up my viewing online list long ago and haven't got round to fixing it lately...

Edit: I gots it...

I reckon it's because of their security review. Previously in inc/functions.php they were using generic stuff - like $_SERVER['PHP_SELF'] - which can be insecure. They've changed this to things like htmlspecialchars_uni($_SERVER['PHP_SELF']), found in the function get_current_location. I'm guessing they've missed something...
Find all posts by this user


Forum Jump:


User(s) browsing this thread: 1 Guest(s)

Contact Us | MyBB | Return to Top | Return to Content | Lite (Archive) Mode | RSS Syndication