[[WikkaReleaseNotes | Wikka Changelog]] ---- ===== [[WhatsNew1166 | Wikka 1.1.6.7]] Release Notes ===== ''Released on Jun 15, 2009'' >>===This is an archive page=== For the **{{color c="red" text="latest release"}}** news please refer to [[WhatsNew | this page]]. ==See also:== ~-**[[WhatsNew1167 | What's new in 1.1.6.7]]** ~-[[Installing1167 | Installation & upgrade notes for 1.1.6.7]] ~- [[InstallingPlugins | How to use the plugins folder]] >>==Acknowledgments== Thanks to Ian Andolina, Sven Krewitt (Secunia), fishy. ==Security fixes== ~- Added random tokens (form IDs) to form submissions to mitigate CSRF attacks. Ticket: 154 ~- Added validation checks for GET params on admin pages to mitigate XSS attacks. Ticket: 879 ==Misc== ~- Shortened default timeout when Wikka server not reachable for version checks; produce a more meaningful error message. Ticket: 884 ---- CategoryEN