Welcome to the Invelos forums. Please read the forum rules before posting.

Read access to our public forums is open to everyone. To post messages, a free registration is required.

If you have an Invelos account, sign in to post.

Invelos Forums->Posts by zeiram Page: 1  Previous   Next
Message Details
Some time ago, I've received reports of a cross-site scripting (XSS) vulnerability in phpDVDProfiler. I've found some time this week to fix it and a few other warnings in the code.

Changelog:
  • security: removed XSS using the search function (CVE-2025-46729)

  • fix: some minimal formatting

  • fix: better compatibility with PHP 8.0 (in TestFonts) and 8.2

  • fix: display of watched statistics when there's no entry for the current month (#49)


  • Due to the security vulnerability, I'd advise you to update as soon as possible.

    As for the previous releases, you can get the new release either from GitHub or my website.
    Posted:
    Topic Replies: 70, Topic Views: 40444
    Invelos Forums->Posts by zeiram Page: 1  Previous   Next