MyBB 1.6.13
SecurityMaintenance
This version is no longer supported
The MyBB 1.6 series reached end of life on October 1, 2015.
This means there will be no more security or maintenance releases for this series and forums running this version of MyBB may be at risk of unfixed security issues. The MyBB Group strongly encourages all communities to upgrade to the latest release of MyBB as soon as possible.
Security vulnerabilities addressed (4)
Possibility of executing PHP code through stylesheets
Possibility of executing PHP code through language files
A XSS vulnerability in search system
Potential weak random string generator
Issues resolved (38)
#1860 Wrong messsage displayed whilst editing user from mod cp
#2261 Showing the results of a poll uses theme from post with pid equal to poll’s id
#2272 empty customer specific profile fields after registration
#2278 “You did not enter a description for this scheduled task”
#2280 Hitting Post Thread when having disallowed attachment ignores all submitted content
#277 Issues with admin cp Inline User Moderation and super administrators
#379 Users browsing this thread incorrect when linking to post
Changed Files (48)
-
admin/
-
inc/
- functions_themes.php
-
modules/
-
config/
- languages.php
-
forum/
- attachments.php
- management.php
- moderation_queue.php
-
style/
- templates.php
- themes.php
-
tools/
- adminlog.php
- statistics.php
- system_health.php
- tasks.php
-
user/
- admin_permissions.php
- group_promotions.php
- groups.php
- users.php
-
config/
-
inc/
-
inc/
- datahandlers - user.php
-
languages/
-
english/
-
admin/
- config_profile_fields.lang.php
- tools_adminlog.lang.php
- tools_system_health.lang.php
- tools_tasks.lang.php
- modcp.lang.php
-
admin/
- english.php
-
english/
-
tasks/
- userpruning.php
- class_core.php
- class_datacache.php
- class_error.php
- class_graph.php
- class_moderation.php
- class_parser.php
- class_session.php
- db_pdo.php
- db_sqlite.php
- functions.php
- functions_forumlist.php
- functions_post.php
- functions_search.php
-
install/
-
resources/
- mybb_theme.xml
- settings.xml
- upgrade28.php
- index.php
-
resources/
-
jscripts/
- inline_moderation.js
- forumdisplay.php
- global.php
- managegroup.php
- member.php
- misc.php
- modcp.php
- newthread.php
Changed Language Files (5)
There are changes to 5 language file(s). Changed languages files can be cross-referenced from the list above.Changed Templates (4)
misc_smilies_popup_smilie
modcp_nobanned
modcp_reports_multipage
modcp_reports_report