Answered: Is q2a 1.8.6 more secure than version 1.7.5?

Post date: 2022-05-16 20:43:47
Views: 446

Generally speaking: yes. It's practically always advisable to keep software up to date, because new versions fix known (potentially exploitable) bugs in older versions.

For more information you can review the version history. From a quick glance notable security improvements appear to be:

  • Security fix: prevent use of <embed> and <object> tags. (v1.8.4)
  • Reworked file cache to securely allow cache inside web root. (v1.8.0 beta 2)
  • Password security has been upgraded from sha1 to use PHP's password_hash function where available. (v1.8.0 beta 2)

You should also keep PHP, your webserver and your database updated, since those are part of the system's attack surface as well.

Please click Here to read the full story.
 
Other Top and Latest Questions:
How one Silicon Valley firm is seizing an opportunity from Premier League soccer's gambling ad clampdown
Pentagon fires U.S. military newspaper leadership
Trump to allow import of 300,000 metric tons of ground beef without tariff
Big week coming up with PCE, Nvidia earnings and then Jackson Hole. Here's what to expect
Accordia Bank is offering a 5.00% APY booster on high-yield savings account for its rebrand — how to get it
Most Americans aren't anti-vaccine. They're uncertain — and that's a growing public health challenge
Answered: The content and articles of my q2a site are being pulled by fake sites. Can you help me to solve this problem?
Movie: Meda or The Not So Bright Side of Things
Book: Red Dragon
Supreme Court allows Trump to continue White House ballroom construction for now