Release Notes: An XSS vulnerability and a CSRF vulnerability were fixed. A topic/post counter bug was fixed.


Release Notes: An XSS vulnerability and a CSRF vulnerability were fixed. A topic/post counter bug was fixed.


Release Notes: A few bugs, annoyances, and security issues were fixed.


No changes have been submitted for this release.


Release Notes: This release fixes an avatars_dir NULL byte injection vulnerability (CVE-2006-4759) and adds support for HttpOnly cookies.


Release Notes: Flood protection was added to the registration process (to prevent DoS attacks). An XSS vulnerability in header.php was fixed.