Release v3.8.10.1
JetEngine v3.8.10.1
What's new in v3.8.10.1
JetEngine v3.8.10.1 was released on . WordPress plugin for creating custom post types, taxonomies, and dynamic content management with Elementor integration. See the full changelog below and compare with the complete version history.
Release details
Released
5.8 MB
File available
Changelog
Fixed
- More strict sanitization of custom table queries to prevent potential SQL injections in some cases (appears as combination of the some backend CPT config and appropriate front-end setup);
- Legacy forms. Santizie status-related query parameters to prevent XSS vulnerability through the form status parmeter;
- Sanitize URL form fields and listing URLs using JetEngine URL schemes;
- Custom COntent Types. Only unserialize array-backed fields when reading items to avoid converting unauthorized serialized strings into real PHP objects.
Verified safe
JetEngine v3.8.10.1 scanned clean with no security threats detected.
View full scan report