Welcome Guest, Not a member yet? Register   Sign In
CodeIgniter 2.2.3 Released
#7

(07-14-2015, 07:16 AM)jlp Wrote: CodeIgniter 2.2.3 has been released today, and is a security release for the 2.x branch.


Removed a fallback to mysql_escape_string() in the 'mysql' database driver (escape_str() method) when there's no active database connection.

Since most have moved on to the development version of 3.0 from the GitHub repo, these fixes only affect sites powered by the legacy version. Sites running the development version of 3.x are unaffected as they have already been addressed in that version line. We felt that sites who were still running 2.x and potentially impacted by the vulnerability warranted an update so the release available for that version line is secure.

You can download v2.2.3 now, and we encourage you to read the full changelog.

Thank you so much, I have a few CI 2 sites which I have not had time to upgrade to CI 3 yet, this is great !
Reply


Messages In This Thread
CodeIgniter 2.2.3 Released - by jlp - 07-14-2015, 07:16 AM
RE: CodeIgniter 2.2.3 Released - by andreabielle - 07-15-2015, 12:14 AM
RE: CodeIgniter 2.2.3 Released - by Hobbes - 07-15-2015, 05:40 AM
RE: CodeIgniter 2.2.3 Released - by webcomfort - 07-15-2015, 03:45 PM
RE: CodeIgniter 2.2.3 Released - by Alan - 07-16-2015, 09:44 AM
RE: CodeIgniter 2.2.3 Released - by kevindeleon - 07-16-2015, 10:09 AM
RE: CodeIgniter 2.2.3 Released - by Narf - 07-16-2015, 02:52 PM
RE: CodeIgniter 2.2.3 Released - by regis92 - 07-21-2015, 08:51 AM
RE: CodeIgniter 2.2.3 Released - by Diederik - 07-21-2015, 11:23 AM
RE: CodeIgniter 2.2.3 Released - by rahendz - 07-28-2015, 08:49 AM
RE: CodeIgniter 2.2.3 Released - by mwhitney - 07-29-2015, 06:31 AM



Theme © iAndrew 2016 - Forum software by © MyBB