01/12/2017 3:14 PM UBB.threads 7.6.0 - Progress Report (2017-01-11) by id242
Changelog 2017-01-11
• admin/gallery -Updated the Gallery Settings page to clarify each setting and their defaults.
• admin/gallery -Added a definition within the header and linked to setting up Gallery Forums / regular Forums.
• post_side -Fixed file name not displaying correctly when no description was available.
• post_gallery -Fixed filename not displaying correctly when no description was available.
• post_gallery -Fixed the filename/dimensions/size of first image, being used across all images. Each image now displays its own image details.
• post_side,post_gallery -Hovering your mouse over each of the images now correctly displays the image attachment's filename.
• showflat.tpl -Corrected some layout issues within Threaded Mode.
• Installer -Updated several New-Install default settings for the UBB.threads 7.6.x series.
• Minor layout improvements in other templates.

01/11/2017 12:49 PM UBB.threads 7.6.0 - Progress Report (2017-01-09) by id242
Changelog 2017-01-09
• Installer -Found and fixed several errors from v7.5.x installer package.
• Installer/Upgrader -Installer is complete!

Screenshot post - The filenames are their descriptions.

01/08/2017 11:04 AM UBB.threads 7.6.0 - Progress Report (2017-01-08) by id242
Changelog 2017-01-08
This Snapshot focused mostly on the Upgrader scripts, with some overlapping attention to the Installer scripts.
• Installer/Upgrader Utility received a complete facelift.
• Upgrader -This script now tells you where you are in the upgrade process.
Upgrader -Complete! It now just needs to be populated with the 7.5.9 => 7.6.0 change data.
• Attachment Manager -Added language strings to tell the users they can drag-and-drop their files in the attachment window.
• common.css -Added values to display the forum's background of short pages through the entire browser window height. Previously on short pages, the background would stop where the footer stopped, leaving a white separator between your footer and the bottom of the browser.
• Minor layout corrections and code cleanup.

01/08/2017 10:53 AM UBB.threads 7.6.0 - Progress Report (2017-01-03) by id242
Changelog 2017-01-03
• admin/movethreads,prunethreads -Updated the amount-per-process (chunk) from 20 to 100. This should account for more recent spec'd hardware. The original amount was used from 2006. The new process amount should be more than easily handled on any current PHP 5.3+ dedicated or shared hosting server, while still staying below max_execution time threshold defaults. This update should reduce the time for this process to complete.
• boardrules -Multiple minor layout corrections. Also used during the registration process.
• coppainsert -Updated the text template to replace "child" with "persons."
• registration -Fixed a long standing bug where if "Age Check" was enabled, new registrations would be processed, except the user would be sent back to the "Registration Entry" page again, instead of the login page.
• registration -Added display of forum "minimum age" notification to persons attempting to register, if Age Check is enabled, and based on the Minimum Age Required entry.
• registration -Removed mention of "children" within the registration language files, in place of the more preferred "persons" and "years old." Some forums cater to a 21+ community, where "child" may not be the correct term for under-age persons. A forum may cater to a 55+ community, where anyone 54 years and younger is... well, not exactly a child either. This update also carries over to where there is an age requirement for posting.
• registration -Replaced the Time Offset input box with a Time Zone drop-down list.
• editdisplay -Multiple layout updates and verbiage clarity.
• editdisplay,registration -Max number of Threads/Posts has been updated to a drop-down menu. This should reduce entry confusion, and improve mobile friendliness.
• left/right columns -Columns are now hidden for Login, Password Recovery, Registration.
• MyStuff pages -Avatar is now the same size as the one in the profile page. If the user does not have an avatar, a silhouette will be displayed. The left-menu is now a set width of 160px, instead of 15%. This resolves many display related issues. My Stuff now uses alt-2 as the background for the menu items. Now you can see these text items when your body background matched the color of the text (display fix). The left-menu now has a title header. This affects all 23 templates which use the "my stuff on left" menu list.
• pagenation -Removed the padding around the pagenation table. Buttons and pagenation now align correctly to the top/bottom of the surrounding cells.
• styles -All included stock styles have been updated once again, to reflect this minor display correction.
• copyrights -Updated from 2016 to 2017.

12/27/2016 2:47 PM UBB.threads 7.6.0 - Progress Report (2016-12-27) by id242
Changelog 2016-12-27 --SECURITY BULLETIN--
• PHPMailer -Updated PHPMailer library from 5.2.16 to version 5.2.19
1) https://github.com/PHPMailer/PHPMailer/blob/master/SECURITY.md
2) https://legalhackers.com/advisories/PHPMailer-Exploit-Remote-Code-Exec-CVE-2016-10033-Vuln.html
3) https://www.wordfence.com/blog/2016/12/phpmailer-vulnerability/

To exploit this vulnerability, an attacker would need to be able to pass user input to a message’s “from” address. UBB.threads is not affected by this issue since email is only ever sent from the configured Forum Email Address and does not allow for user input to be set elsewhere.

In addition, the send-to addresses are always checked that sendmail path exists and validated as correct email format, as well as being escaped, prior to being stored in the database or passed on to PHPMailer. Emailing a post/message goes through several steps of validation prior to being sent, and will not be passed to PHPMailer if the validation does not pass.

NOTES: All versions of the third-party PHPMailer library distributed with UBB.threads versions within the 7.5.x series and prior, are vulnerable to a remote code execution vulnerability. This is patched in PHPMailer 5.2.18 which will be included with UBB.threads 7.6.0.

If you are using the PHPMailer library included within your UBB.threads package to handle any additional or custom (unsupported) scripts, you should manually update your PHPMailer library to version 5.2.18 or newer. https://github.com/PHPMailer/PHPMailer
For reference, UBB.threads 7.5.x uses PHPMailer 2.0.2.

187 Views · 2 Comments
12/27/2016 2:38 PM UBB.threads 7.6.0 - Progress Report (2016-12-20) by id242
Changelog 2016-12-20
Attachment Manager updates:
• Attachments can be dragged to the Attachment Manager... anywhere within that section.
• An upload indicator will appear below it.
• There are checks for File Type and File Size.
• Only 1 item will upload at a time. If multiple items are selected, only the last one will be used.
• A preview of the attached item is displayed. If the item is not an image-type, the file extension will be used instead.
• File captions are displayed under the file name and preview.

Shout Box
Donate Today!
Donate via PayPal

Donate to UBBDev today to help aid in Operational, Server and Script Maintenance, and Development costs.

Please also see our parent organization VNC Web Services if you're in the need for Migration, Security or Coding Services.
Recommended Hosts
We have personally worked with, and recommend, the following Web Hosts:
· Stable Host
· Blue Host
· Interserver.net
Visit Us on Facebook
Member Spotlight
id242
id242
California
Posts: 872
Joined: July 2001
Show All Member Profiles 
Forum Statistics
Forums63
Topics37,362
Posts293,041
Members13,761
Most Online1,493
Sep 9th, 2016
Top Posters(All Time)
AllenAyres 25,587
JoshPet 11,330
Rick 8,373
LK 7,396
Lord Dexter 6,503
Gizmo 5,861
Greg Hard 5,533
Top Posters(30 Days)
JAISP 50
id242 48
Gizmo 43
Today's Statistics
Currently Online 1056
Topics Created 0
Posts Made 2
Users Online 4
Birthdays 19
The UBB.Developers Network (UBB.Dev/Threads.Dev) is ©2000-2017 VNC Web Services

 
Powered by UBB.threads™ PHP Forum Software 7.6.0
(Snapshot build 20170117.dev)
Page Time: 0.011s Queries: 5 (0.002s) Memory: 2.4576 MB (Peak: 2.5285 MB) Zlib enabled. Server Time: 2017-01-20 01:35:39 UTC