Changeset 3408354
- Timestamp:
- 12/02/2025 06:16:23 PM (4 months ago)
- File:
-
- 1 edited
-
simple-draft-list/trunk/readme.txt (modified) (3 diffs)
Legend:
- Unmodified
- Added
- Removed
-
simple-draft-list/trunk/readme.txt
r3376385 r3408354 4 4 Tags: draft, list, scheduled, SEO, widget 5 5 Requires at least: 4.6 6 Tested up to: 6. 86 Tested up to: 6.9 7 7 Requires PHP: 7.4 8 8 Stable tag: 2.6.2 … … 120 120 No. It was developed for WordPress and so forks remain unsupported. I have no intention of developing and testing this on any other version. 121 121 122 = Where do I report security bugs found in this plugin? = 123 124 Please report security bugs found in the source code of the undefined plugin through the [Patchstack Vulnerability Disclosure Program](https://patchstack.com/database/vdp/061b870b-ac72-411c-bd25-89855b985ee1). The Patchstack team will assist you with verification, CVE assignment, and notify the developers of this plugin. 125 122 126 == Screenshots == 123 127 … … 129 133 130 134 = 2.6.2 = 131 * Enhancement: Fixed another reported vulnerability ([CVE-2025-11197](https://www.cve.org/CVERecord?id=CVE-2025-11197)), reported to me by [WordFence](https://www.wordfence.com ). This time it's with the icon folder parameter135 * Enhancement: Fixed another reported vulnerability ([CVE-2025-11197](https://www.cve.org/CVERecord?id=CVE-2025-11197)), reported to me by [WordFence](https://www.wordfence.com/r/26c227ba3ee33458/). This time it's with the icon folder parameter 132 136 * Enhancement: Added some further sanitization to improved the security further 133 137 * Bug: Fixed a bug with the word count output 134 138 135 139 = 2.6.1 = 136 * Enhancement: Fixed a reported vulnerability ([CVE-2025-10181](https://www.cve.org/CVERecord?id=CVE-2025-10181)), reported to me by [WordFence](https://www.wordfence.com ). Until this fix, it was possible for an editor, using the plugin's shortcode, to inject web scripts via a link.140 * Enhancement: Fixed a reported vulnerability ([CVE-2025-10181](https://www.cve.org/CVERecord?id=CVE-2025-10181)), reported to me by [WordFence](https://www.wordfence.com/r/26c227ba3ee33458/). Until this fix, it was possible for an editor, using the plugin's shortcode, to inject web scripts via a link. 137 141 138 142 = 2.6 =
Note: See TracChangeset
for help on using the changeset viewer.