A new version of eXtplorer (v2.1.15) has been released. It's fixes a critical security issue. An update is highly recommended.
Changes:
- fixed a critical security issue reported by shimmeris
- PHP 8 compatibility
A new version of eXtplorer (v2.1.14) has been released. It's fixes some security issues reported by Sander Bos. An update is recommended.
The following changes have been made:
- fixed various security issues reported by Sander Bos
- fixed deprecated warnings on PHP 7.4
A new version of eXtplorer (v2.1.13) has been released. It's fixes various security issues reported by Mario Korth. An update is highly recommended.
The following changes have been made:
--- version 2.1.13 ---
- fixed various security issues reported by Mario Korth:
* potential XSS
* Arbitrary file read
* Path traversal in listing directory contents
* Path traversal in archive feature
- added new turkish translations
--- version 2.1.12 ---
- fixed wrong version display
- fixed empty language selector
Fixed problems in version 2.1.11:
- fixed "text.js not found" message on server when editing text files
- fixed PHP 7.2 incompatibility in Tar.php
- PHP 5.3 compatibility fixes
eXtplorer version 2.1.10 has been released!
These are the changes:
- fixed vulnerability discovered by ADLab of Venustech (command injection, but requires admin access)
- webdav display UPPER/CASE/FULL/PATH with some webdav client
- standalone extplorer webdav does not work with PHP7
- CVE-2016-4313: archive path traversal vulnerability in extplorer 2.1.9
- #202 Users with read only permissions should not be able to extract archives.
- added indonesian language files
An update is highly recommended.
The eXtplorer homepage has been renewed. I was using the old layout for around 4 years now and it was time to "refresh" it a little bit. Besides that I also upgraded the server to the latest Ubuntu LTS release and switched to a far more updated version of Redmine for this site.
I hope you like it!
Today eXtplorer 2.1.8 was released, fixing some minor vulnerabilities.
Changelog:
- added security functions for protection against CSRF attacks
- fixed "directories with the name '0' are not loading"
An update is recommended.
The eXtplorer 2.1.7 release has been updated to make eXtplorer installable under Joomla! 3.4.
The XML manifest file for Joomla! 1.0/1.5 has been removed, so eXtplorer >= 2.1.7 can't be installed on these really old Joomla! version anymore.