Kunena 7.0.4 Released

The Kunena team has announce the arrival of Kunena 7.0.4 [K 7.0.4] in stable which is now available for download as a native Joomla extension for J! 5.4.x/6.0.x. This version addresses most of the issues that were discovered in K 6.2 / K 6.3 / K 6.4 and issues discovered during the last development stages of K 7.0

Question Who's online shows hidden forums/topics

More
17 years 2 months ago #5964 by keltic
Admins browsing hidden forums are shown in the who's online list with which admin topic they're reading. Anonymous / normal users are denied access when clicking on the topic title, but it's still a security issues since a topic title can reveal more information then wanted.

Maybe has something to do with this fix from 1.0.8?

Some private pages were shown to anonymous users. You couldn't use them to get or alter any private information, but they have been fixed anyway.

Please Log in or Create an account to join the conversation.

More
17 years 2 months ago #5985 by grumblemarc
Kunena is not actually capable of hiding forums/topics. So how are you going about this? If you're using Joomla's access levels to achieve this you're fining out now that they don't really work.

We love stars on the Joomla Extension Directory . :-)

Please Log in or Create an account to join the conversation.

More
17 years 2 months ago #6021 by Matias
No, it has nothing to do with that fix. This is another issue.

There are huge amount of these in FB/Kunena. We need to fix them sooner or later.

Can you point me the page?

Please Log in or Create an account to join the conversation.

More
17 years 2 months ago #6031 by keltic
It is the /forum?func=who page.

Since we have disabled that page for security reasons I've picked a random one from Google:

gcalendar.allon.ch/content/support/forum.html?func=who

In the action column hidden forums/topics are displayed.

Please Log in or Create an account to join the conversation.

More
17 years 2 months ago #6059 by Matias
Thanks for pointing out the page. This wil be added to my ever growing todo list, too.

Please Log in or Create an account to join the conversation.

More
17 years 2 months ago #6082 by keltic
No, thank you!

Please Log in or Create an account to join the conversation.

Time to create page: 0.215 seconds