Answered: Is q2a 1.8.6 more secure than version 1.7.5?

Post date: 2022-05-16 20:43:47
Views: 498

Generally speaking: yes. It's practically always advisable to keep software up to date, because new versions fix known (potentially exploitable) bugs in older versions.

For more information you can review the version history. From a quick glance notable security improvements appear to be:

  • Security fix: prevent use of <embed> and <object> tags. (v1.8.4)
  • Reworked file cache to securely allow cache inside web root. (v1.8.0 beta 2)
  • Password security has been upgraded from sha1 to use PHP's password_hash function where available. (v1.8.0 beta 2)

You should also keep PHP, your webserver and your database updated, since those are part of the system's attack surface as well.

Please click Here to read the full story.
 
Other Top and Latest Questions:
Kalshi asks CFTC to allow margin trading on its platform, letting users buy with borrowed funds
We're protecting big profits in tech, and buying more non-tech in this oversold market
Circle lands $100 million from Binance to ramp up global USDC expansion
Novo defends diversification push as CEO eyes deals beyond obesity
Book: Murderland: Crime and Bloodlust in the Time of Serial Killers
Movie: Interstate 60
No new stock highs, no problem: Options traders bet they're coming in these names
Meta's quick success with Muse puts consumers back in the driver's seat of the AI trade
Altman and Amodei expected to join UN Security Council meeting about AI
Peloton is revamping its treadmills with new features in the next phase of its turnaround