Answered: Is q2a 1.8.6 more secure than version 1.7.5?

Post date: 2022-05-16 20:43:47
Views: 409

Generally speaking: yes. It's practically always advisable to keep software up to date, because new versions fix known (potentially exploitable) bugs in older versions.

For more information you can review the version history. From a quick glance notable security improvements appear to be:

  • Security fix: prevent use of <embed> and <object> tags. (v1.8.4)
  • Reworked file cache to securely allow cache inside web root. (v1.8.0 beta 2)
  • Password security has been upgraded from sha1 to use PHP's password_hash function where available. (v1.8.0 beta 2)

You should also keep PHP, your webserver and your database updated, since those are part of the system's attack surface as well.

Please click Here to read the full story.
 
Other Top and Latest Questions:
S&P 500 closes higher Friday as Amazon surges; Dow posts fourth straight winning month: Live updates
How Leopold Aschenbrenner built a $45 billion AI hedge fund — and lost most of it in days
UEFA says it has lost confidence in Infantino as FIFA faces calls for transparency
Research on fighting "phone addiction" or whatever you want to call it
Star Trek: Strange New Worlds: The Griffin Incident
Movie: Hadestown: The Musical
Stargate SG-1: Fail Safe Rewatch
Tankers near Oman come under fire as Iran threatens to choke off shipping routes
Buy these stocks ahead of earnings. Bank of America says they offer plenty of upside
EV prices aren't following the 'law of used cars,' analyst says — what it means for buyers and sellers