EzPortal - Portal Software for Forums

EzPortal - Made to Fit Your SMF Forum - Glad You Found Us!

Advertise Here +- +-

UserBox

Welcome, Guest.
Please login or register.
 
 
 
Forgot your password?

+- Recent Posts

ezPortal 7.0 Released! by EzPortal
February 23, 2026, 08:35:20 pm

ezPortal 6.5 Released! by EzPortal
January 18, 2026, 02:46:30 pm

ezPortal 6.0 released! by EzPortal
July 10, 2025, 10:50:58 pm

Re: TinyMCE Editor disapears by ezxenova
May 06, 2025, 07:38:09 am

Re: TinyMCE Editor disapears by DenDen66
March 02, 2025, 06:59:40 am

Re: TinyMCE Editor disapears by DenDen66
February 28, 2025, 08:09:43 am

Re: TinyMCE Editor disapears by DenDen66
February 28, 2025, 07:31:29 am

Re: TinyMCE Editor disapears by EzPortal
February 27, 2025, 06:57:30 pm

+- HTML Menu


Sample HTML Block Usage - You May Custom Code it, as needed!

Recent Topics ezBlock

ezPortal 7.0 Released! by EzPortal
February 23, 2026, 08:35:20 pm

ezPortal 6.5 Released! by EzPortal
January 18, 2026, 02:46:30 pm

ezPortal 6.0 released! by EzPortal
July 10, 2025, 10:50:58 pm

TinyMCE Editor disapears by ezxenova
May 06, 2025, 07:38:09 am

Renaming a page by DenDen66
February 23, 2025, 10:51:22 am

Styling ezBlock by EzPortal
February 19, 2025, 09:15:05 pm

I don't remember how to upgrade by EzPortal
February 05, 2025, 08:44:58 am

ezPortal 5.6 release by EzPortal
January 31, 2025, 11:21:34 am

5.5.4 by EzPortal
January 16, 2025, 08:31:41 pm

Moving a block higher in list by UkuleleMan
December 17, 2024, 07:58:27 am

Author Topic: ezPortal 7.0 Released!  (Read 256 times)

0 Members and 1 Guest are viewing this topic.

ezPortal 7.0 Released!
« on: »
ezPortal Updates focusing on SMF 2.1 and SMF 2.0. Mainly getting the project up to date with better set of code.

7.0
!Security: Converted ~125 SQL queries to use SMF parameterized syntax ({int:}, {string:}, {raw:}) across EzPortal2.php, Subs-EzPortalMain2.php, and EzPortalInstall2.php to prevent SQL injection.
!Security: Fixed open redirect vulnerability in shoutbox redirect handlers (EzPortalAddShout, EzPortalRemoveShout).
!Security: Added CSRF session token verification to noscript shout deletion (EzPortalRemoveShout).
!Security: Fixed path traversal vulnerability in block file upload (EzPortalImportBlock) by sanitizing filename with basename().
!Fixed shoutbox AJAX endpoints on SMF 2.1 showing raw JSON as the whole page instead of processing via JavaScript. AJAX handlers now dispatch before template loading and use clean output exit.
!Fixed mobile device detection using outdated user-agent list (removed dead platforms: Symbian, Palm, BlackBerry Storm, PocketIE, Opera Mobile). Now uses modern keywords covering all current mobile browsers.
!Fixed strpos() bug in mobile detection where a match at position 0 would be missed.
!Fixed PHP notice from defined(WIRELESS) missing quotes, now defined('WIRELESS').
+Removed redundant meta-refresh from shoutbox iframe since AJAX shoutbox handles auto-refresh via JavaScript.


Download the latest version in the downloads area

If anyone has any ideas/feedback suggestions for the portal let us know.
Thanks,
ezPortal
Like ezPortal? Support me at https://www.patreon.com/vbgamer45/

 

Related Topics

  Subject / Started by Replies Last post
0 Replies
11048 Views
Last post August 25, 2009, 06:33:48 pm
by EzPortal
2 Replies
16533 Views
Last post September 24, 2009, 05:59:13 am
by EzPortal
0 Replies
11842 Views
Last post May 08, 2012, 10:17:08 pm
by EzPortal
5 Replies
79012 Views
Last post August 04, 2014, 04:56:26 am
by Maxx
2 Replies
17892 Views
Last post December 15, 2014, 02:08:05 pm
by EzPortal

+-SMF Gallery

Quick Menu


Powered by EzPortal