Skip to main content

5.3.1.9 - 25 September 2017

Fixes

  • 2017-09-11 - [Bug] RCE vulnerability: A vendor/admin with limited access permissions could upload a php script using the File attachments module. Fixed. #BUG-5461 (Eugene Dementjev) #Core #FileAttachments #CanadaPost