If you have encountered a potential security vulnerability in Zend Framework, please report it to us at zf-security@zend.com. We will work with you to verify the vulnerability and patch it. When reporting issues, please provide the following information: Component(s) affected A description indicating how to reproduce the issue A summary of the security vulnerability and impact We […]
And finally there has been some actual movement on securing up the Zend Framework in an proactive fashion (at least from now on:) )
As announced earlier by Matthew, Zend Framework 1.9.7, 1.8.5 and 1.7.9 have been released incorporating routine maintenance and a number of security fixes detailed in the announcement. It's recommended that framework users upgrade as soon as possible to the latest release of whichever of these minor branches they are using.