Answered: Is q2a 1.8.6 more secure than version 1.7.5?

Post date: 2022-05-16 20:43:47
Views: 167

Generally speaking: yes. It's practically always advisable to keep software up to date, because new versions fix known (potentially exploitable) bugs in older versions.

For more information you can review the version history. From a quick glance notable security improvements appear to be:

  • Security fix: prevent use of <embed> and <object> tags. (v1.8.4)
  • Reworked file cache to securely allow cache inside web root. (v1.8.0 beta 2)
  • Password security has been upgraded from sha1 to use PHP's password_hash function where available. (v1.8.0 beta 2)

You should also keep PHP, your webserver and your database updated, since those are part of the system's attack surface as well.

Please click Here to read the full story.
 
Other Top and Latest Questions:
Friday's jobs report will be delayed because of the partial government shutdown
Family offices brace for higher inflation with real estate and alternative investments
Answered: I'll be taking custom jobs/orders for Q2A
Goldman upgrades this Tencent-backed digital brokerage firm, flags crypto trading as growth driver
How to show question title before question meta in question list. (Mayropro theme)
The risk-reward on this payments stock looks attractive. How to trade it using a risk reversal options trade
How to show question title before question meta in question list like SnowFlat theme. (Mayropro theme)
Fed's Stephen Miran resigns from White House post
Private payrolls rose by just 22,000 in January, far short of expectations, ADP says
Software stock rout shocks Street: 'Nowhere to hide'... 'Morass of gloom'