Show Sidebar Log in
Commons In A Box Logo
  • Home
  • About
    • Project Team
    • Logos and Graphics
  • Showcase
    • CBOX Classic Showcase
    • CBOX OpenLab Showcase
  • Demo
  • Get Started
  • Documentation
    • Technical Guide
    • CBOX Classic Guide
    • CBOX OpenLab Guide
  • Support Forums
    • CBOX Classic
    • CBOX OpenLab
    • Developers Forum
  • News

Group Admins

  • Profile picture of Scott Voth

CBOX Classic Support

Public Group active 4 months ago

This group provides support for Commons In A Box Classic, our original software for community-building. Register for an account or log in to commonsinabox.org, then join the group and post your question here.

Buddy Press Upgrade Issue

  • This topic has 1 reply, 2 voices, and was last updated 4 months ago by Ray.
Viewing 2 posts - 1 through 2 (of 2 total)
  • Author
    Posts
  • January 9, 2025 at 4:11 pm #9244
    Jesse Merandy
    Participant

    I am trying to upgrade Buddy Press due to the new security vulnerability here: https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-plugins/buddypress/buddypress-1410-authenticated-subscriber-directory-traversal

    However, there is no way to do this through the Dashboard and when I try to update via CPANEL it knocks out my site. Most of the errors seem to be with the CBOX theme. I am wondering if you have see this issue elsewhere and if you have any advice on moving forward.  I am running the latest version of WordPress and Buddypress 14.0.1

    January 10, 2025 at 11:02 am #9245
    Ray
    Keymaster

    Hi Jesse,

    Regarding:

    However, there is no way to do this through the Dashboard and when I try to update via CPANEL it knocks out my site. Most of the errors seem to be with the CBOX theme.

    About the problem with CBOX Theme, are you able to access your server’s PHP error log? If you are able to, can you post the entries related to CBOX Theme?

    Regarding the BuddyPress vulnerability, that is only specific to the “Take Webcam” photo functionality. Until the CBOX team is able to publish an update to upgrade BuddyPress for CBOX Classic, you can disable the “Take Webcam” functionality with the following code snippet in wp-content/plugins/bp-custom.php or in a wp-content/mu-plugins/ file (if you have one):

    add_filter( 'bp_avatar_use_webcam', '_return_false' );

    If you have any questions on how to apply this snippet, let me know.

  • Author
    Posts
Viewing 2 posts - 1 through 2 (of 2 total)
  • You must be logged in to reply to this topic.
Log In
Group logo of CBOX Classic Support
  • Home
  • Forum
  • Announcements
  • Docs
  • Members 287
  • Send Invites

Groups

Newest | Active | Popular | Alphabetical
  • Group logo of CBOX Classic Support
    CBOX Classic Support
    287 members
  • Group logo of CBOX Pioneers
    CBOX Pioneers
    71 members
  • Group logo of CBOX Developers
    CBOX Developers
    40 members
  • Group logo of CBOX OpenLab Support
    CBOX OpenLab Support
    22 members
  • Group logo of CBOX-OL Testing Partners
    CBOX-OL Testing Partners
    12 members

CBOX has its roots in the CUNY Academic Commons, which in turn was made possible through funding from The City University of New York itself.

CUNY Logo

CUNY Academic Commons Logo

City Tech logo

The Commons In A Box was made possible through the generous support of the Alfred P. Sloan Foundation.

Alfred P. Sloan Foundation Logo

NEH Logo

The CUNY Graduate Center has directly contributed to the CUNY Academic Commons, housing the project since its inception, and has contributed to CBOX through its GC Digital Initiatives.

CUNY Graduate Center Logo

CUNY Graduate Center Digital Initiatives Logo

Powered by Commons In A Box
css.php
Skip to toolbar
  • About WordPress
    • WordPress.org
    • Documentation
    • Learn WordPress
    • Support
    • Feedback
  • Log In
  • Register