This is an important and urgent security advisory from CB Team: Upgrade all your Community Builder 1.0 and 1.1 installations to CB 1.2.1 as soon as possible.
We have received yesterday a private report from a Joomlapolitan about a critical vulnerability of CB 1.1, that we could now reproduce and confirm.
Community Builder 1.2 and 1.2.1 (as well as all CB 1.2 RC releases) are safe to our knowledge and NOT affected, as the corresponding CB 1.0/1.1 code has been entirely rewritten for CB 1.2.
CB 1.1 vulnerability is critical, highest level.
Lesezeichen