The scheduled maintenance release of osCmax v2.0x will be posted later this week. A few new bugs found in 2.0.15 have been fixed as well as some fixes that didn't make it into the last release due to time constraints.
osCMax v2.0.15 was released a few days ago and I wanted to fill in a few details to explain what this new release is all about. The new version fixes a lot of issues that were present in the previous release and is primarily a bug fix release. there were also several additions to features/functions.
A serious security vulnerability has been discovered in osCMax v2.0.3
and all prior versions. It is important that you follow the below
instructions carefully to secure your site. Failure to do so could
result in your site being breached by attack.
The following files must be removed from your site's administrative panel folder:
Over the last week I have been releasing a few mods that I converted to
osCMax format. They are all very useful mods, and add a ton of features
to osCMax
Finally, osCMax 2.0 RC4 is here, with hundreds of improvements,
upgrades, patches and updates. There was so much to do from RC3 to RC4
that it was a sometimes a daunting task to keep at it.
For a list of changes and download link, check out the release announcement here:
An XSS security flaw has been found in osCMax, specifically the printable catalog module. The flaw is in all 2.0 versions, including RC3, RC3.0.1, RC3.0.2, and RC4 SVN.