This release fixes a SQL injection vulnerability where users with the administrator role could execute arbitrary SQL commands.
Thanks to Nguyen Duy Quoc Khanh via WPScan for the responsible disclosure.
Other changes:
Improvements
Fixes
Improvements
Compatibility with Mailchimp for WordPress 4.6.
Improvements
Fixes
Fixes
Improvements
Fixes
Improvements
Additions
Improvements
Improvements
Improvements
Improvements
Fixes
Improvements
Improvements
Improvements
Fixes
Improvements
Additions
Fixes
Improvements
Additions
Fixes
Improvements
Additions
Fixes
Improvements
Additions
Fixes
Improvements
Additions
Fixes
Improvements
Additions
Fixes
Fixes
Improvements
Additions
Fixes
Additions
Fixes
Fixes
Improvements
Additions
Additions
Improvements
Fixes
Fixes
Improvements
Additions
Improvements
– Added SVG admin menu icon.
– Field names are now sanitized before they are saved in the database.
– Submit button was missing for default form fields.
– Unneeded <form> tags are now stripped from the form before saving.
Additions
– Added data-title and data-slug attributes to the <form> element on the frontend.
Introducing a first version of HTML Forms, a different approach to forms for WordPress sites.
Plugin Website
Visit website
Share Post
Get insights into what’s happening at ChangelogWP right in your inbox. We don’t believe in spam.