Matomo Response to Zend Framework Security Advisory ZF2009-02

Contents

ZF2009-02: XSS vector in Zend_Filter_StripTags

Matomo (Piwik) 0.2.33 (released Mar. 2, 2009) and earlier versions are not affected by this security advisory (disclosed Mar. 2, 2009) because Matomo uses a subset of ZF which does not include Zend_Filter.

Matomo users are, however, encouraged to upgrade to take advantage of new features and bug fixes.

Reference: Cross-site scripting vector in Zend_Filter_StripTags

Enjoyed this post?
Join the 160,000+ subscribers who receive the Matomo Newsletter straight to their inbox every month

Subscribe to our newsletter to receive regular information about Matomo. You can unsubscribe at any time from it. This service uses SendGrid. Learn more about it within our privacy Policy page.

Get started with Matomo

A powerful web analytics platform that gives you and your business 100% data ownership and user privacy protection.

Certified ISO 27001:2022

Certified ISO 27001:2022

Your analytics data is protected by globally recognised security standards.

Read more
Live websites using Matomo worldwide
0 K
Websites using Matomo including historical
0 M
Customer satisfaction
0 %

Own your data. Protect your privacy. Unlock better analytics.

Organisations should be able to understand their digital performance while mainteaning full ownership and control of their data.

No credit card required.