Latest News

Export to PDF Libraries Updated/Fixed!

December 3, 2016 Tags: release, pdf

We've updated some of the optional 'Export to PDF' libraries.  These libraries are NOT included with the Exponent CMS package (nor the git repository). Several of these require special customized packages and are available as separate downloads. (read more)

Version 2.4.0 Released

October 29, 2016 Tags: release, bugs, security

This version, code-named 'Limited Lockdown' fixes many security issues in all previous versions and adds screen reader (accessibility) support. We strongly encourage all Exponent installations be upgraded to v2.4.0 as soon as practical! (read more)

Security Vulnerability - All Exponent Versions - October 2016

October 29, 2016 Tags: release, bugs, security

There are several security vulnerabilities in all versions of Exponent 2.x found in September and October, 2016, reported by a number of individuals including:Manuel Garcia Cardenas, the PKAV TEAM, fyth, felixk3y, DM_, obfusor, xiaoL, ylgaaaaa, Tomato, wooeast, and xiojunjie, These vulnerabilities could allow possible SQL injections, remote file exploits, RCE, XSS, changes to configurations, and other issues. They have been present in all versions of Exponent (2.x). The fix is: (read more)

Patch #1 Released for V2.3.9

September 13, 2016 Tags: patch, release, bugs

This patch fixes several issues in the v2.3.9 release. It also provides several tweaks and new features including a 'fill screen' feature for the elFinder file manager, though the main focus is providing several security fixes.  Patch #1 to v2.3.9 is found at (read more)