Skip to content

Commit 67ee01a

Browse files
authored
Merge pull request #655 from ProgressPlanner/filip/v-181
V1.8.1
2 parents ea20bdb + bd28542 commit 67ee01a

File tree

2 files changed

+6
-6
lines changed

2 files changed

+6
-6
lines changed

CHANGELOG.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,8 @@
11
= 1.8.1 =
22

3-
Bugs we fixed:
4-
5-
* Fix vulnerability with arbitrary option update.
3+
- Security fix: Privilege escalation via an AJAX call where authenticated users could update arbitrary site options.
4+
- Added capability checks.
5+
- Thanks to [NumeX](https://github.com/NumeXx) for responsibly disclosing via the Patchstack Bug Bounty Program.
66

77
= 1.8.0 =
88

readme.txt

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -85,9 +85,9 @@ https://youtu.be/e1bmxZYyXFY
8585

8686
= 1.8.1 =
8787

88-
Bugs we fixed:
89-
90-
* Fix vulnerability with arbitrary option update.
88+
- Security fix: Privilege escalation via an AJAX call where authenticated users could update arbitrary site options.
89+
- Added capability checks.
90+
- Thanks to [NumeX](https://github.com/NumeXx) for responsibly disclosing via the Patchstack Bug Bounty Program.
9191

9292
= 1.8.0 =
9393

0 commit comments

Comments
 (0)