[wp-trac] [WordPress Trac] #53430: Update PHPMailer to 6.5.1 security release

WordPress Trac noreply at wordpress.org
Wed Jun 16 16:31:18 UTC 2021


#53430: Update PHPMailer to 6.5.1 security release
--------------------------------+------------------------------
 Reporter:  ayeshrajans         |       Owner:  (none)
     Type:  enhancement         |      Status:  new
 Priority:  normal              |   Milestone:  Awaiting Review
Component:  External Libraries  |     Version:
 Severity:  major               |  Resolution:
 Keywords:                      |     Focuses:
--------------------------------+------------------------------

Comment (by Synchro):

 It's 6.5.0, not 6.5.1. I think you should be OK with the validator change.
 What it prevents is injecting a simple string function name as a
 validator, but function injection or closures will continue to work as
 before, which I understand is how WordPress uses it. I passed this by WP
 folks on the security-cooperation channel, and they said as much.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/53430#comment:1>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list