Answered: Is q2a 1.8.6 more secure than version 1.7.5?

Post date: 2022-05-16 20:43:47
Views: 430

Generally speaking: yes. It's practically always advisable to keep software up to date, because new versions fix known (potentially exploitable) bugs in older versions.

For more information you can review the version history. From a quick glance notable security improvements appear to be:

  • Security fix: prevent use of <embed> and <object> tags. (v1.8.4)
  • Reworked file cache to securely allow cache inside web root. (v1.8.0 beta 2)
  • Password security has been upgraded from sha1 to use PHP's password_hash function where available. (v1.8.0 beta 2)

You should also keep PHP, your webserver and your database updated, since those are part of the system's attack surface as well.

Please click Here to read the full story.
 
Other Top and Latest Questions:
Tips for Parenting at a dual language school (non native)
Anthropic's Mythos created fake identities to fool humans in new cyber incident
Lucid stock plunges as EV maker begins 'operational reset,' delays midsize vehicle
SpaceX gives Nvidia a much-needed boost. Plus, Cramer on an 'undervalued' stock
Oil prices fall on negotiations to manage ship traffic in Strait of Hormuz
Abdul El-Sayed wins Michigan Democratic Senate primary as voters pivot to the left
Salad and Go files for Chapter 11 bankruptcy after cyclospora fears worsened its challenges
Follow-up - anti-depressants and (male) sex, difficulty climaxing
SpaceX stock falls 7% after AI spending surge rattles investors
Hollow wall anchor