[wp-trac] [WordPress Trac] #53430: Update PHPMailer to 6.5.1 security release
WordPress Trac
noreply at wordpress.org
Wed Jun 16 16:31:18 UTC 2021
#53430: Update PHPMailer to 6.5.1 security release
--------------------------------+------------------------------
Reporter: ayeshrajans | Owner: (none)
Type: enhancement | Status: new
Priority: normal | Milestone: Awaiting Review
Component: External Libraries | Version:
Severity: major | Resolution:
Keywords: | Focuses:
--------------------------------+------------------------------
Comment (by Synchro):
It's 6.5.0, not 6.5.1. I think you should be OK with the validator change.
What it prevents is injecting a simple string function name as a
validator, but function injection or closures will continue to work as
before, which I understand is how WordPress uses it. I passed this by WP
folks on the security-cooperation channel, and they said as much.
--
Ticket URL: <https://core.trac.wordpress.org/ticket/53430#comment:1>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform
More information about the wp-trac
mailing list