19
Piwik Response to ZF2011-02 Security Advisory
The current version of Piwik is not affected by this vulnerability. Since version 0.5 (released December 2009), Piwik checks (and sets, if required) the MySQL connection charset to UTF-8.
Piwik users are, however, encouraged to upgrade to the latest versions of Piwik and PHP to take advantage of new features and bug fixes.
Reference: ZF2011-02: Potential SQL Injection Vector When Using PDO_MySql
Anthon Pang
Anthon is a Software Developer from Canada and an active Piwik team member since 2007. He has contributed some of the earliest and most critical code in Piwik, such as the Javascript Tracker. Anthon also built and maintains our QA infrastructure.
Subscribe to our rss feed:
Posts or you can Suggest a topic to write about in the blog or See list of Features
English


Comments: Leave a Reply