github WordPress/two-factor 0.7.2
Version 0.7.2 (Security Improvement)

latest releases: 0.11.0, 0.10.0, 0.9.1...
2 years ago
  • Security improvement: Store the second factor authentication step nonce hashed to prevent leaking it via database read access #453. Props to @calvinalkan for reporting the issue.
  • Fix: Add wp_specialchars_decode() to escape the HTML entity on the Email Subject line (#412), props @nbwpuk.
  • Fix: Use hash_equals() when comparing the email token (#425), props @Mati02K.
  • Tooling: Introduce @wordpress/env for development tooling and move to GitHub actions for CI (#436).

Don't miss a new two-factor release

NewReleases is sending notifications on new releases.