Release v1.7.2
Sigma Media Manager v1.7.2
Latest versionWhat's new in v1.7.2
Sigma Media Manager v1.7.2 was released on . WordPress plugin for organizing and managing media files through customizable folder structures. See the full changelog below and compare with the complete version history.
Release details
Released
853.3 KB
File available
Changelog
### Security
* **Document Library inline shortcode no longer exposes the whole media library** — a `[smm_document_library folder="..."]` shortcode now serves only the folder it was published with, and requests without a folder are refused. Previously the endpoint behind the shortcode could be called directly to list every attachment on the site, including files that were never attached to a post.
* **Password-protected libraries resist guessing** — five wrong passwords lock further attempts for fifteen minutes, and a password can only be checked against the library it actually belongs to.
* **Replacing an image verifies the file itself** instead of trusting the file type reported by the browser.
* Licence responses are decoded with a strict type whitelist.
* The nonce endpoint no longer answers logged-out visitors.
### Important
* Clear your page cache after updating. Pages cached before the update contain the old Document Library markup, and their file lists will stay empty until the cache is rebuilt.
Compatibility
- Requires WordPress
- 5.8
- Tested up to
- 7.1
- Requires PHP
- 7.4
Verified safe
Sigma Media Manager v1.7.2 scanned clean with no security threats detected.
View full scan report