Theme editor

  • New XenForo Released Full Nulled 2.3.10 is available for download now. -> HERE
    New XenForo Released Upgrade Nulled 2.3.10 is available for download now. -> HERE
    XenForo Enhanced Search (XFES) 2.3.10 is available for download now. -> HERE
    XenForo Resource Manager (XFRM) 2.3.10 is available for download now. -> HERE
    XenForo Media Gallery (XFMG) 2.3.10 is available for download now. -> HERE

XenForo 2.3.9 Released (Security Fix) patch

| XF 2.3 Released (Premium) XenForo 2.3.9 Released (Security Fix) patch 2.3.9

No permission to download
💾 Resources submitted by: Staraddons • 💬 Posts: 1579 • 🏆 Points: 119 • 👍 Likes: 455 • ⬆️ Resources: 986
Compatible XF 2.x versions
  1. 2.3
Additional requirements
PHP 7.2 or newer (PHP 8.3 recommended)
MySQL 5.7 and newer (Also compatible with MariaDB/Percona etc.)
All of the official add-ons require XenForo 2.3.
Enhanced Search requires at least Elasticsearch 7.2.
The following public templates have had changes:
  • attachment_macros
  • bb_code_tag_attach
  • lightbox_macros
Where necessary, the merge system within the "outdated templates" page should be used to integrate these changes.

The issues identified are as follows:
  • Prevention of a possible stored XSS (cross-site scripting) exploit related to BB code rendering (thank you to Antisocial)
  • Prevention of a possible XSS exploit related to lightbox usage in posts (thank you UwU)
  • Prevention of a possible RCE (remote code execution) exploit via authenticated, but malicious, admin users (thank you UwU)
We recommend doing a full upgrade to resolve the issue, but a patch can be applied manually. See below for further details.

Upload patch files

  • Download 239-patch.zip
  • Extract the .zip file
  • Upload the contents of the upload directory to the root of your XenForo installation
  • Rebuild master data by logging in to your install URL, or running xf:rebuild-master-data on the command line
Note: If you decide to patch the files instead of doing full upgrades, your "File health check" will report these files as having "Unexpected contents". Because these files no longer contain the same contents your version of XF was shipped with, this is expected and can be safely ignored.
XenForo 2.3.9 Full Release Nulled
| XF 2.3 Released (Premium) XenForo 2.3.9 Full Release Nulled 2.3.9
XenForo 2.3.9 Release Upgrade nulled
| XF 2.3 Released (Premium) XenForo 2.3.9 Release Upgrade nulled 2.3.9
2.3.9
Version
0
Downloads
15
Views
First release
Last update
566.4 KB
File size
zip
Extension type
0.00 star(s) 0 ratings
Ratings
Uploader
Staraddons
Uploaded
986 Resources.
Available Tags:
  • Tags Tags
    patch xenforo xenforo 2.3.9
  • More resources from Staraddons

    Similar content Most view View more
    Back
    Top