Answered: Is q2a 1.8.6 more secure than version 1.7.5?

Post date: 2022-05-16 20:43:47
Views: 395

Generally speaking: yes. It's practically always advisable to keep software up to date, because new versions fix known (potentially exploitable) bugs in older versions.

For more information you can review the version history. From a quick glance notable security improvements appear to be:

  • Security fix: prevent use of <embed> and <object> tags. (v1.8.4)
  • Reworked file cache to securely allow cache inside web root. (v1.8.0 beta 2)
  • Password security has been upgraded from sha1 to use PHP's password_hash function where available. (v1.8.0 beta 2)

You should also keep PHP, your webserver and your database updated, since those are part of the system's attack surface as well.

Please click Here to read the full story.
 
Other Top and Latest Questions:
Penpals for grown-ups?
Special Event: Rifftrax: BLACK BELT ANGELS
Inside the Chinese fraud rings stealing billions from banks and retailers
The AI boom just found two new winners: Goldman Sachs and JPMorgan Chase
Lucid dismisses report that it is weighing filing for bankruptcy or going private after shares plunge
Jim Cramer says concerns about AI market froth are overblown. Here's why
Bipartisan group of senators propose Social Security reform process ahead of funding shortfall
United Airlines' new upsell: Keeping other travelers out of the middle seat
Warren Buffett is accelerating his charitable donations with aim to give away Berkshire wealth by 2034
Johnson & Johnson has a chance to show it's more than just a rotation winner