vulnerable extensions

Here you can contact the editors of our Extensions site, as well as access infomation relating to this site.

Moderator: JED Team

Forum rules
Forum Rules
READ ME <-- please read before posting, this means YOU.
Locked
User avatar
mandville
Joomla! Master
Joomla! Master
Posts: 15150
Joined: Mon Mar 20, 2006 1:56 am
Location: The Girly Side of Joomla in Sussex

vulnerable extensions

Post by mandville » Mon Nov 09, 2009 10:21 pm

Today we have made the updated vulnerable extension list that was under construction a live document.
This is available at http://vel.joomla.org/
which has replaced the old list that has been archived.
Reports of vulnerable extensions can be reported to the JED or posted in a topic clearly showing a vulnerable extension report.

See http://forum.joomla.org/viewtopic.php?f=303&t=458968 for discussions. Thank you

Yes, this is a slight double post for obvious reasons. :-[
HU2HY- Poor questions = Poor answer
Un requested Help PM's will be reported, added to the foe list and possibly just deleted
{VEL Team Leader}{TM Auditor }{ Showcase & Security forums Moderator}

dynamicnet
Joomla! Guru
Joomla! Guru
Posts: 577
Joined: Wed Aug 05, 2009 1:42 pm

Re: vulnerable extensions

Post by dynamicnet » Tue Nov 10, 2009 2:27 pm

Greetings mandville:

{hugs} mandville.

If this is not a sticky here and in the security forum, can it please be made a sticky?

Can you also have it in the "Forum rules" section in both forums (i.e. near the http://docs.joomla.org/Category:Security_Checklist link)?

Thank you.

P.S. Can this also be added to http://www.joomla.org/download.html next to the extension directory link? Also posting the http://docs.joomla.org/Category:Security_Checklist link on the download page may also be helpful.
Peter M. Abraham
http://www.dynamicnet.net/ - Dynamic Net, Inc. - in business since June 1995; a PCI Compliant, managed hosting provider.

User avatar
mandville
Joomla! Master
Joomla! Master
Posts: 15150
Joined: Mon Mar 20, 2006 1:56 am
Location: The Girly Side of Joomla in Sussex

Re: vulnerable extensions

Post by mandville » Tue Nov 10, 2009 3:12 pm

yes, this post is a sticky in this sub forum. the link to the page has been added to various security documents and categories within the docs/wiki
HU2HY- Poor questions = Poor answer
Un requested Help PM's will be reported, added to the foe list and possibly just deleted
{VEL Team Leader}{TM Auditor }{ Showcase & Security forums Moderator}

User avatar
mandville
Joomla! Master
Joomla! Master
Posts: 15150
Joined: Mon Mar 20, 2006 1:56 am
Location: The Girly Side of Joomla in Sussex

Re: vulnerable extensions

Post by mandville » Fri May 03, 2013 9:40 pm

As of the 1st may, all vulnerable extensions must be reported via the new system at http://vel.joomla.org/submit-vel.html
all resolution/solved announcements from developers must also be placed there,
http://vel.joomla.org/extension-update-form.html
posting of any VEL items in this or the security forums will be pointed to the vel.joomla.org website as being the only place these will be dealt with.
HU2HY- Poor questions = Poor answer
Un requested Help PM's will be reported, added to the foe list and possibly just deleted
{VEL Team Leader}{TM Auditor }{ Showcase & Security forums Moderator}


Locked

Return to “extensions.joomla.org - Feedback/Information”