Home › Forums › Quform PHP › phpmailer vulnerabilities found in quform/composer.lock
- This topic has 4 replies, 2 voices, and was last updated 5 years ago by
jeffaltman.
- AuthorPosts
- July 9, 2021 at 5:09 pm #33189
jeffaltman
ParticipantHi – Github tells me there is a quform security vulnerability as follows:
3 phpmailer/phpmailer vulnerabilities found in quform/composer.lockI did not find anything in the forums. The suggested remediation is:
Upgrade phpmailer/phpmailer to version 6.5.0 or later. For example:
"require": { "phpmailer/phpmailer": "6.5.0" }What do you suggest?
Thanks.
July 12, 2021 at 11:04 am #33190Ally
Support StaffYou don't have permission to view this content. Please log in or register and then verify your purchases to gain access.
July 12, 2021 at 5:56 pm #33191jeffaltman
ParticipantHello – Thanks for responding. However, I do not have access to the CLI. When do you expect the next release and will I receive that release?
Thank you,
Jeff
July 13, 2021 at 9:49 am #33194Ally
Support StaffYou don't have permission to view this content. Please log in or register and then verify your purchases to gain access.
July 13, 2021 at 7:45 pm #33195jeffaltman
ParticipantHi Ally – Thank you for the quick response and updated version. Per your instructions, I replaced
composer.jsonandcomposer.lockand the entirevendorfolder. Tested and appears to be working. Also, no dependabot notices.Warmest regards – Jeff
- AuthorPosts
- You must be logged in to reply to this topic.
