Code được làm từ bản Xenforo 1.5.2, giao diện mặc định nên còn nhiều thiếu sót so với bản gốc bên Nhattao. Nhất là addons, vì trình độ nên chỉ có thể kiếm addons Brivium Thread Classfied 1.2.3 bên vnnet nên để bản share hoàn thiện mong các bạn share bản gốc
Today, we are pleased to release XenForo 1.5.9. This release fixes a number of bugs and issues that were found since the release of 1.5.8. As this is a maintenance release, the vast majority of the focus was an increase in stability.
Today, we are pleased to release XenForo 1.5.8. This release fixes a number of bugs and issues that were found since the release of 1.5.7. As this is a maintenance release, the vast majority of the focus was an increase in stability.
Today, we are pleased to release XenForo 1.5.7. This release fixes a number of bugs and issues that were found since the release of 1.5.6. As this is a maintenance release, the vast majority of the focus was an increase in stability.
Today, we are pleased to release XenForo 1.5.6. This release fixes a number of bugs and issues that were found since the release of 1.5.5. As this is a maintenance release, the vast majority of the focus was an increase in stability.
XenForo is a commercial Internet forum software written in the PHP programming language using the Zend Framework (A Rapid Application Development Framework). The software is developed by a team led by former vBulletin lead developers Kier Darby and Mike Sullivan .
Method 1: Upgrade to the New Version You may upgrade to XenForo 1.5.2 to fix this issue. You should upgrade as you would to any other release. See further below in this announcement for more details on this release.
Today, we are releasing XenForo 1.2.8 to address two potential security vulnerabilities. We recommend that all customers running XenForo 1.2 or earlier upgrade to 1.2.8 or use the attached patch file as soon as possible.
The two issues are XSS vulnerabilities. XSS (Cross Site Scripting) issues allow scripts and malicious HTML to be injected into the page, potentially allowing data theft or unauthenticated access.
In the notices system, the name token was not escaped as expected. This could allow specially crafted requests to trigger an XSS for guests (or for a registered user to trigger an XSS on themselves).
In the filter list system in the admin control panel, dynamic highlighting when filtering did not escape output properly, potentially triggering an XSS against the user viewing the page.
Thanks to Diego Palacios for reporting these two issues.
Applying a Fix: Upgrading You may upgrade to 1.2.8 to fix this issue. You should upgrade as you would to any other release.
Customers with an active license may download 1.2.8 from their customer area. Full details for how to install and upgrade XenForo can be found in the XenForo Manual.
Applying a Fix: Patching Alternatively, this issue can be fixed by applying the patch in the attached file. You should simply overwrite the following files with the versions attached to this message:
js/xenforo/filter_list.js
js/xenforo/full/filter_list.js
library/XenForo/ViewRenderer/HtmlPublic.php
The files can be found at the same path within the attachment.
Link:
Today, we are releasing XenForo 1.3.7 to address two potential security vulnerabilities. We recommend that all customers running XenForo 1.3 upgrade to 1.3.7 or use the attached patch file as soon as possible.
The two issues are XSS vulnerabilities. XSS (Cross Site Scripting) issues allow scripts and malicious HTML to be injected into the page, potentially allowing data theft or unauthenticated access.
In the notices system, the name token was not escaped as expected. This could allow specially crafted requests to trigger an XSS for guests (or for a registered user to trigger an XSS on themselves).
In the filter list system in the admin control panel, dynamic highlighting when filtering did not escape output properly, potentially triggering an XSS against the user viewing the page.
Thanks to Diego Palacios for reporting these two issues.
Applying a Fix: Upgrading You may upgrade to 1.3.7 to fix this issue. You should upgrade as you would to any other release.
Customers with an active license may download 1.3.7 from their customer area. Full details for how to install and upgrade XenForo can be found in the XenForo Manual.
Applying a Fix: Patching Alternatively, this issue can be fixed by applying the patch in the attached file. You should simply overwrite the following files with the versions attached to this message:
js/xenforo/filter_list.js
js/xenforo/full/filter_list.js
library/XenForo/ViewRenderer/HtmlPublic.php
The files can be found at the same path within the attachment.
Today, we are happy to releaseXenForo 1.3.2. This release fixes a number of bugs and issues that were found in 1.3.1. As this is a maintenance release, the vast majority of the focus was an increase in stability.
Due to a change inFacebook's application permission system, XenForo's Facebook registration integration has changed slightly. Most significantly, we have reduced the number of permissions we request so that individual applications do not need to go through Facebook's new application review policy. As such, less profile information may be automatically imported into XenForo when a user registers.
Some of the bugs fixed in 1.3.2 include:
Bug fixes related to pasting and formatting text in the editor
Bug fixes related to the formatting of messages for the rich text editor when editing
Updated the Facebook integration to use version 2.0 of their API
Only show entries on the notable members page where the member actually has posts, likes, or trophy points
Fix the attribution of tagging alerts generated in a profile post comment
Support all languages that Twitter supports in the tweet button
Add isolation to usernames to improve display in RTL when LTR and RTL text is mixed
Add-on update/export buttons appear when creating an add-on
BB code blocks now all have overflow auto for float containment/preventing overlap with floated ads
Call to action buttons have have vertical-align top for improved cross browser display
Added scrolling to the avatar overlay to handle add-ons inserting additional rows
Account upgrades now use the "full" link generator to create the return URL
Fixed unexpected padding on the breadcrumbs with narrow displays
Fixed ReCAPTCHA image overflow with narrow displays
Added an open graph description to forum views and pages
Fixed inconsistent positioning of stay logged in/lost password links on login forms
Fixed overlay only buttons displaying on the follower/following lists when viewed as a non-overlay
Adjusted the display of voters on a poll when there's a deleted user
Fix positioning of several overlays in RTL with narrow displays
Fix JS errors when the hash part of a URL has non-alphanumeric characters
Reduce the amount of entries shown on the users/content awaiting approval pages to prevent timeouts and speed up display
Silence a potential race condition when creating directories
Fix a display issue when displaying a shortened IPv6 string when it ends with a collapsed section
Remove leading and trailing white space from Twitter app keys and secrets
Improve the error handling of Twitter integration to aid in debugging
Fix a potential duplicate ID error when importing from XenForo and maintaining IDs
Fix a race condition when inserting image proxy records
See theResolved Bug Reportsforum for further information.
The follow templates have had changes:
account_alerts
account_avatar_overlay
account_upgrades
alert
breadcrumb.css
form.css
forum_view
helper_login_form
member_followers
member_following
pagenode_container
register_facebook
thread_poll_voters
Where necessary, the merge system within the "Outdated Templates" page should be used to integrate these changes.
All customers with active licenses may now download the new version from the customer area. DOWNLOAD XENFORO 1.3.2 password : idaklak.com