Answered: Is q2a 1.8.6 more secure than version 1.7.5?

Post date: 2022-05-16 20:43:47
Views: 237

Generally speaking: yes. It's practically always advisable to keep software up to date, because new versions fix known (potentially exploitable) bugs in older versions.

For more information you can review the version history. From a quick glance notable security improvements appear to be:

  • Security fix: prevent use of <embed> and <object> tags. (v1.8.4)
  • Reworked file cache to securely allow cache inside web root. (v1.8.0 beta 2)
  • Password security has been upgraded from sha1 to use PHP's password_hash function where available. (v1.8.0 beta 2)

You should also keep PHP, your webserver and your database updated, since those are part of the system's attack surface as well.

Please click Here to read the full story.
 
Other Top and Latest Questions:
Anthropic limits Mythos AI rollout over fears hackers could use model for cyberattacks
Elon Musk seeks ouster of OpenAI CEO Sam Altman as part of lawsuit
Levi Strauss revenue jumps again, with DTC making up more than half of sales for the first time
Countries around the world are considering teen social media bans – why experts warn it’s a ‘lazy’ fix
Delta, Southwest raise checked bag fees $10 amid jet fuel price surge, joining other carriers
Trump threatens tariffs of 50% on countries 'supplying military weapons to Iran'
Movie: The Super Mario Galaxy Movie
Monarch: Legacy of Monsters: Requiem
First ships pass Strait of Hormuz since Trump-Iran ceasefire, but traffic remains low amid confusion
JD Vance calls Iran ceasefire a 'fragile truce' and says Trump is 'impatient to make progress'