Skip to content
General Revolution Evolution Add-ons International
Login | Register | MODX.com
MODX Open Source Content Management System, Framework, Platform and More.
Find a Partner | Hosts + SaaS | Jobs | Donate
  • RegisterSign Up with the MODX Community
  • LoginUse Your MODX.com Account
  • MODX Community Forums
  • General
  • Security Notices
  •  
  • Security Fix for MODx Revolution 2.0-beta2 (and beta1)#

  • 28215
    4,064
    - MODX Senior Developer
    shaun mccormick | modx foundation | modx revolution | bugtracker | official docs | modx@github | api docs | splittingred.com

    splittingred Reply #1, 2 years, 10 months ago

    Reply
    • Link to this post#1
    There has been a reported security vulnerability for MODx Revolution 2.0 beta1 and beta2.

    We have committed a temporary fix until we hit the root of the issue, which is a problem with the modAccessibleObject and Context Policy loading.

    SVN users, to fix this vulnerability, please update to r5505.

    Non-SVN users, please make the changes as illustrated here:
    http://svn.modxcms.com/crucible/changelog/modx/?cs=5501

    and here:
    http://svn.modxcms.com/crucible/changelog/modx/?cs=5505

    Again, MODx recommends that you not use any beta products on shared or public servers without acknowledging the risk of potential undiscovered vulnerabilities. If you do choose to use such products, MODx recommends using a restricted username and/or password that is limited only to the MODx install. This also applies to file and user permissions.

    We apologize for any inconvience this might have caused.





Actions

Login to Post

Other Support Options

To file a bug or make a feature request visit our issue tracker, or you can also purchase commercial support.

Love MODX?

If you build sites for a living with MODX or just love using it, why not give back?

Information

Posted in this thread:
splittingred

 
Back to Top

MODX Global HQ

1333 N Stemmons Fwy, Ste 110
Dallas, TX 75207
United States

+1 (469) 777-MODX (6639)

The MODX Company

  • Contact
  • Media Center
  • Careers at MODX
  • Wall of Fame
  • The MODX Blog

Sponsors

SoftLayer Firehost: Secure Cloud Hosting

Stay Connected

Read our previous email newsletters.

Twitter Facebook Google+ LinkedIn github Feeds

Privacy Policy | Terms of Service | Pixels by AKTA Web Studio© 2005-2012 MODX. All rights reserved. Trademark Policy