There is a cookie security issue introduced in bbPress 0.9.0
because of the new method introduced (but 0.8.x should not affected)
So be sure to upgrade to 0.9.0.2
http://bbpress.org/latest.zip
Changeset:
http://trac.bbpress.org/changeset?old_path=tags%2F0.9&old=1399&new_path=tags%2F0.9.0.2&new=1492
Wordpress 2.5.0 is also affected by this,
and to make the cookies sync again you need 2.5.1 + 0.9.0.2
(WordPress 2.3.3 should not be affected)
Security advisory CVE ID: CVE-2008-1930
http://www.cl.cam.ac.uk/~sjm217/advisories/wordpress-cookie-integrity.txt
Posted 7 months ago
#
![US [12] US](/images/flags/us.png)
![DE [1] DE](/images/flags/de.png)
in the past 30 minutes.