Releases: JulioPotier/secupress
Releases · JulioPotier/secupress
v2.2.5.3
v2.2.5.2
- 01 April 2024
- Security Fix: CSRF in "Blackhole" module, criticity: very low (Thanks to Wordfence Security Team for the report)
- Fix#1039 false positive on "include in wp-config" in malware scanner
- Update Malware Database
- Update i18n
v2.2.5.1
21 Dec 2023
- Security Fix: TOCTOU in Limit Login Attempts (Thanks to Konan Nagashima)
- Improvement#963: Add context for secupress_die()
- Improvement: Add DE translations (Thanks to Klaus Bei)
- Improvement: Status "bad" into "warning" on bad plugins scanner results in free version
- Fix#1036: Remove REST API calls made using query parameters (Thanks to JB Audras) + usage of rawurldecode() (Thanks to Aether Black)
- Fix#1035: Malware scan file too big
- Fix#1034: Matomo was blocked
- Fix#1033: Bad referer default list, "cialis"
- Fix#1032: Uncaught TypeError: Cannot read properties of null (reading 'querySelectorAll')
- Fix#1030: Plugins&Themes settings on MS does not save correctly
- Fix#1021: PHP Deprecated: filter_var() null in parameter 3
- Fix#1015: Better output secupress_pro_sessions_control_users_column_content()
- Fix#1010: Uncaught TypeError: strpos(): Argument 1 must be of type string, array given
- Fix#1001: Move secupress_format_message()
- Fix#962: Ranged IPs can prevent ip detection to block
- Update Malware Database
- Update global i18n
v2.2.4.1
- Update: Malware Database
- Fix#1001: Call to undefined function secupress_format_message() in /secupress-pro/free/admin/functions/scan-fix.php:51
- Fix#1000: Passing null to parameter #1 ($string) of type string is deprecated in /secupress/free/functions/files.php on line 693
- Fix#996: PHP Fatal error: Allowed memory size of 1075838976 bytes exhausted in secupress-pro/pro/modules/file-system/tools.php on line 88
- Fix#993: joker in IPs ban everything
- Fix#977: Time to soon for antispam
- Fix#904: cannot deactivate default role lock
- Fix global i18n
v2.2.3
- 14 September 2022
- Update: Malware Database v22.9.14
- Security Fix#985: IP Spoofing, thanks to Calvin Alkan on https://snicco.io/
- Fix#987: new passwordless UI didn't need to validate the captcha to get the magic link
- Fix#986: unban link for admins does not always work
- Fix#984: fix "two factor authentication" plugin detection
- Fix#981: Move Login could be activated without pretty permalinks
- Fix#980: key regeneration button is hidden by the helpers style
- Fix#962: Ranged IPs can prevent ip detection to be blocked
- Fix global i18n
v2.1.3
bump versions