Security vulnerablilities (General)

by Doug, Canada, Saturday, August 23, 2008, 17:12 (5717 days ago)

I ran MLF on my website several years ago and removed it because a number of websites warned of security vulnerabilities (just do a Google search for "My Little Forum Security"), specifically SQL injections.

I would like to return to MLF-- it's fast and has the features I want in my forum without a lot of bloat-- but in researching the current version, I found a site listing the following vulnerabilities

PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. Power Phlogger: crossite scripting, information leakage.

Have any of these vulnerabilities been addressed or will they be addressed in the near future? I would like to return to MLF, but I don't want to risk having my website hacked again.

locked
3103 views

Complete thread:

 RSS Feed of thread