From Mahara Wiki

< Releases

Mahara 1.2.7 Release Notes

This is a stable release of Mahara 1.2. Stable releases are fit for
general use. If you find a bug, please report it to the tracker:

This release includes an upgrade path from 1.0. If you wish to
upgrade, we encourage you to make a copy of your website and test the
upgrade on it first, to minimise the effect of any potential
unforeseen problems.

Changes from 1.2.6:

  • Blogs get deleted without sesskey check (CVE 2011-0440)
     * XSS in select box validation (CVE 2011-0439)
     * Fix PHP 5.3 incompatibility
     * Add support for both Leap2A versions (2009-03 and 2010-07)