Theme editor



thxf.org

news vBulletin Security Patch for 3.8.7, 4.2.2 and 5.X

A security issue has been found that affects all versions of vBulletin including 3.x, 4.x and 5.x. We have released security patches to account for this vulnerability. This includes patches for vBulletin 3.8.7, vBulletin 4.2.2 and all versions of vBulletin 5 (including Cloud accounts). The patch is also applied to vBulletin 5.1.0 RC1. It is imperative that you apply these patches as soon as possible.

Due to functionality changes, the minimum PHP version for the patch is 5.2.0. This represents an increase for both vBulletin 3. Alternatively customers can install the JSON functions separately viahttp://pecl.php.net/package/json in which case it will work with any compatible PHP version that their particular version of vBulletin supports. You will need to collaborate with your hosting provider or systems administrator to apply the changes to PHP.

Patch for vBulletin 5.0.5 PL1
Patch for vBulletin 4.2.2 PL1
Patch for vBulletin 3.8.7 PL3
Patch for vBulletin 3.8.7 MAPI

Linked below are patch files so that you can manually update versions of vBulletin 3 and vBulletin 4 without a direct patch.
 


Similar threads

  • Article Article
The API functionality of vBulletin 6 and 5.7.5 has been found to have security issues. We have created fixes for these issues. To maintain site security, you should apply this patch as soon as...
Replies
0
Views
315
  • Article Article
vBulletin 6.1.0 Changes and Updates A preview release of vBulletin 6.1.0 is available for download. Preview releases are for testing upcoming releases and should not be used on production servers...
Replies
0
Views
671
  • Article Article
This patch solves three issues: how the system detects PHAR files, a potential security issue in BBCode rendering, and a problem with inviting members to a Blog. Self-hosted customers should apply...
Replies
0
Views
612
  • Article Article
vBulletin 6.0.8 is now available for download by self-hosted (download) customers. vBulletin Cloud sites will be automatically updated in the upcoming weeks. Front End Changes Go to New Post A new...
Replies
0
Views
632
  • Article Article
A security issue has been found in the AdminCP log in functionality of vBulletin 6.0.0 and 5.7.5. This security patch addresses the concerns outlined in CVE-2023-39777. We have created a fix for...
Replies
0
Views
460


Back
Top Bottom