<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0" xmlns:discourse="http://www.discourse.org/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>Announcements - MODX Community</title>
    <link>https://community.modx.com/c/announcements/5</link>
    <description>Topics in the &#39;Announcements&#39; category Important announcements by the MODX core team.</description>
    
      <lastBuildDate>Wed, 29 Jul 2026 22:52:49 +0000</lastBuildDate>
      <atom:link href="https://community.modx.com/c/announcements/5.rss" rel="self" type="application/rss+xml" />
        <item>
          <title>Scheduled Infrastructure Maintenance—Frankfurt Datacenter</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>MODX Cloud Status Updates</category>
          <description><![CDATA[
            
<hr>
<small>This is a companion discussion topic for the original entry at <a href="https://status.modxcloud.com/incident/986030">https://status.modxcloud.com/incident/986030</a></small>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/scheduled-infrastructure-maintenance-frankfurt-datacenter/9214">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/scheduled-infrastructure-maintenance-frankfurt-datacenter/9214</link>
          <pubDate>Wed, 29 Jul 2026 22:52:49 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>No</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-9214</guid>
          <source url="https://community.modx.com/t/scheduled-infrastructure-maintenance-frankfurt-datacenter/9214.rss">Scheduled Infrastructure Maintenance—Frankfurt Datacenter</source>
        </item>
        <item>
          <title>Save Issues for MODX Sites</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>MODX Cloud Status Updates</category>
          <description><![CDATA[
            
<hr>
<small>This is a companion discussion topic for the original entry at <a href="https://status.modxcloud.com/incident/973525">https://status.modxcloud.com/incident/973525</a></small>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/save-issues-for-modx-sites/9205">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/save-issues-for-modx-sites/9205</link>
          <pubDate>Wed, 22 Jul 2026 12:39:24 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>No</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-9205</guid>
          <source url="https://community.modx.com/t/save-issues-for-modx-sites/9205.rss">Save Issues for MODX Sites</source>
        </item>
        <item>
          <title>MODX Revolution Input Validation Vulnerability</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Security Notices</category>
          <description><![CDATA[
            <h2><a name="p-36598-overview-1" class="anchor" href="https://community.modx.com#p-36598-overview-1" aria-label="Heading link"></a>Overview</h2>
<ul>
<li><strong>Project</strong>: MODX Revolution (core)</li>
<li><strong>CVE ID</strong>: Pending</li>
<li><strong>Affected Versions</strong>: All versions</li>
<li><strong>Fixed Version</strong>: <a href="https://modx.com/download/other-versions?releaseKey=revolution-3.2.3-pl">3.2.3</a> and <a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.9-pl">2.8.9</a></li>
<li><strong>Release Date</strong>: 2026-07-21</li>
<li><strong>Severity</strong>: Pending—impact varies by site configuration. A formal CVSS score will be published with the full technical disclosure.</li>
</ul>
<h2><a name="p-36598-vulnerability-details-2" class="anchor" href="https://community.modx.com#p-36598-vulnerability-details-2" aria-label="Heading link"></a>Vulnerability Details</h2>
<h3><a name="p-36598-type-3" class="anchor" href="https://community.modx.com#p-36598-type-3" aria-label="Heading link"></a>Type</h3>
<p>Improper Input Validation, with potential escalation to Remote Code Execution</p>
<h3><a name="p-36598-description-4" class="anchor" href="https://community.modx.com#p-36598-description-4" aria-label="Heading link"></a>Description</h3>
<p>A vulnerability has been identified in MODX Revolution related to insufficient input validation. On its own, this can allow injection of arbitrary content into site templates. Depending on site-specific factors, impact can escalate further, up to and including remote code execution. The issue has been present for an extended period and was identified during an internal security review.</p>
<p>We are withholding further technical detail—including attack vector, affected configuration criteria, and proof-of-concept information—until patch adoption is broad enough for fuller disclosure to be responsible. A follow-up advisory with complete technical details will be published at that time.</p>
<h3><a name="p-36598-attack-vector-5" class="anchor" href="https://community.modx.com#p-36598-attack-vector-5" aria-label="Heading link"></a>Attack Vector</h3>
<p>Not published in this preliminary advisory.</p>
<h2><a name="p-36598-affected-systems-6" class="anchor" href="https://community.modx.com#p-36598-affected-systems-6" aria-label="Heading link"></a>Affected Systems</h2>
<p>Some installations are affected more directly than others depending on configuration. We are not publishing the specific criteria at this time. All MODX Revolution installations on the 2.8.x and 3.x branches should upgrade regardless of known configuration, since exposure can’t be reliably self-assessed without the full technical detail.</p>
<h2><a name="p-36598-mitigation-7" class="anchor" href="https://community.modx.com#p-36598-mitigation-7" aria-label="Heading link"></a>Mitigation</h2>
<p><strong>Upgrade required</strong>: Upgrade to <a href="https://modx.com/download/other-versions?releaseKey=revolution-3.2.3-pl">3.2.3</a> or <a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.9-pl">2.8.9</a> as soon as possible.</p>
<p>MODX Cloud customers: infrastructure-level mitigations have been applied. This reduces risk while you upgrade but doesn’t replace patching your site.</p>
<h2><a name="p-36598-credits-8" class="anchor" href="https://community.modx.com#p-36598-credits-8" aria-label="Heading link"></a>Credits</h2>
<ul>
<li><strong>Discovery</strong>: <a href="https://github.com/Omeryl">Elizabeth Southwell (Omeryl)</a></li>
<li><strong>Resolution</strong>: <a href="https://github.com/opengeek">Jason Coward (opengeek)</a></li>
<li><strong>Coordination</strong>: MODX Security Team</li>
</ul>
<h2><a name="p-36598-timeline-9" class="anchor" href="https://community.modx.com#p-36598-timeline-9" aria-label="Heading link"></a>Timeline</h2>
<ul>
<li><strong>Discovery Date</strong>: 2026-07-20</li>
<li><strong>Fix Development</strong>: 2026-07-21</li>
<li><strong>Preliminary Disclosure</strong>: 2026-07-21</li>
<li><strong>Full Technical Disclosure</strong>: To be announced</li>
</ul>
<h2><a name="p-36598-references-10" class="anchor" href="https://community.modx.com#p-36598-references-10" aria-label="Heading link"></a>References</h2>
<ul>
<li>MODX Security Team Contact: <a href="mailto:security@modx.com">security@modx.com</a></li>
<li>Fixed Version Downloads: <a href="https://modx.com/download/other-versions?releaseKey=revolution-3.2.3-pl">Revolution 3.2.3</a>, <a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.9-pl">Revolution 2.8.9</a></li>
</ul>
<h2><a name="p-36598-revision-history-11" class="anchor" href="https://community.modx.com#p-36598-revision-history-11" aria-label="Heading link"></a>Revision History</h2>
<ul>
<li><strong>2026-07-21</strong>: Preliminary advisory published. Full technical disclosure to follow once patch adoption is sufficient.</li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/modx-revolution-input-validation-vulnerability/9199">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/modx-revolution-input-validation-vulnerability/9199</link>
          <pubDate>Tue, 21 Jul 2026 22:32:11 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-9199</guid>
          <source url="https://community.modx.com/t/modx-revolution-input-validation-vulnerability/9199.rss">MODX Revolution Input Validation Vulnerability</source>
        </item>
        <item>
          <title>Revolution 3.2.3 and 2.8.9 Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Announcements</category>
          <description><![CDATA[
            <p>We’ve <a href="https://modx.com/blog/revolution-3.2.3-2.8.9">published MODX Revolution 3.2.3 and 2.8.9</a> to address a security vulnerability present in all currently supported versions. We’ve applied mitigations at the infrastructure level for MODX Cloud customers, but you should still upgrade your site—you may not know whether your own configuration is affected.<br>
<strong>Important:</strong> Treat this as a priority upgrade regardless of your site’s setup.</p>
<ul>
<li><a href="https://modx.com/blog/revolution-3.2.3-2.8.9">Read the Complete Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.2.3-pl">Download Revolution 3.2.3</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.9-pl">Download Revolution 2.8.9</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-3-2-3-and-2-8-9-released/9198">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-3-2-3-and-2-8-9-released/9198</link>
          <pubDate>Tue, 21 Jul 2026 22:08:11 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-9198</guid>
          <source url="https://community.modx.com/t/revolution-3-2-3-and-2-8-9-released/9198.rss">Revolution 3.2.3 and 2.8.9 Released</source>
        </item>
        <item>
          <title>Connectivity Issues For Some Users</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>MODX Cloud Status Updates</category>
          <description><![CDATA[
            
<hr>
<small>This is a companion discussion topic for the original entry at <a href="https://status.modxcloud.com/incident/962931">https://status.modxcloud.com/incident/962931</a></small>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/connectivity-issues-for-some-users/9190">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/connectivity-issues-for-some-users/9190</link>
          <pubDate>Mon, 13 Jul 2026 20:40:40 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>No</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-9190</guid>
          <source url="https://community.modx.com/t/connectivity-issues-for-some-users/9190.rss">Connectivity Issues For Some Users</source>
        </item>
        <item>
          <title>Revolution 3.2.2. Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>MODX Revolution 3.2.2 is <a href="https://modx.com/blog/revolution-3.2.2">out now</a>. This one touches a wider range of areas than the last patch—resource handling, the Package Manager, the manager email template, and a pass at modernizing the JS behind the tree, elements, and resources panels.</p>
<ul>
<li><a href="https://modx.com/blog/revolution-3.2.2">Read the Complete Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.2.2-pl">Download Revolution 3.2.2</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a Revo 3.2.2 Cloud</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-3-2-2-released/9197">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-3-2-2-released/9197</link>
          <pubDate>Tue, 07 Jul 2026 03:00:00 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-9197</guid>
          <source url="https://community.modx.com/t/revolution-3-2-2-released/9197.rss">Revolution 3.2.2. Released</source>
        </item>
        <item>
          <title>MODX Community Forums went down</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>MODX.com Status Updates</category>
          <description><![CDATA[
            
<hr>
<small>This is a companion discussion topic for the original entry at <a href="https://status.modx.com/">https://status.modx.com/</a></small>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/modx-community-forums-went-down/9146">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/modx-community-forums-went-down/9146</link>
          <pubDate>Sun, 17 May 2026 04:00:32 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>No</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-9146</guid>
          <source url="https://community.modx.com/t/modx-community-forums-went-down/9146.rss">MODX Community Forums went down</source>
        </item>
        <item>
          <title>Revolution 3.2.1 Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>We’re happy to <a href="https://modx.com/blog/revolution-3-2-1">announce MODX Revolution 3.2.1</a>, a patch release cleaning up a batch of bugs and warnings reported since 3.2.0. Package Manager fixes, cleanup of PHP deprecation warnings, and some housekeeping on the documentation and build tooling side round out the release.</p>
<ul>
<li><a href="https://modx.com/blog/revolution-3.2.1">Read the Complete Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.2.1-pl">Download Revolution 3.2.1</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a Revo 3.2.1 Cloud</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-3-2-1-released/9196">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-3-2-1-released/9196</link>
          <pubDate>Wed, 13 May 2026 03:00:00 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-9196</guid>
          <source url="https://community.modx.com/t/revolution-3-2-1-released/9196.rss">Revolution 3.2.1 Released</source>
        </item>
        <item>
          <title>Revolution 3.2.0 Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>We’re thrilled to <a href="https://modx.com/blog/revolution-3.2">announce the latest release of MODX Revolution, 3.2</a>.</p>
<p>This release brings stability improvements and refinements that enhance your content management workflow. From mobile-friendly manager updates to enhanced Template Variable rendering, improved security features to PHP 8.5 compatibility, version 3.2 represents our ongoing commitment to refining and polishing the MODX platform.</p>
<p><strong>Important:</strong> This release requires PHP 8.1 or higher. Please verify your server meets this requirement before upgrading.</p>
<ul>
<li><a href="https://modx.com/blog/revolution-3.2">Read the Complete Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.2.0-pl">Download Revolution 3.2.0</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a Revo 3.2.0 Cloud</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-3-2-0-released/8983">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-3-2-0-released/8983</link>
          <pubDate>Wed, 18 Feb 2026 15:10:51 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-8983</guid>
          <source url="https://community.modx.com/t/revolution-3-2-0-released/8983.rss">Revolution 3.2.0 Released</source>
        </item>
        <item>
          <title>Revolution 3.1.1 and modAI Released</title>
          <dc:creator><![CDATA[rthrash]]></dc:creator>
          <category>Announcements</category>
          <description><![CDATA[
            <p>Happy February, MODXers! Today we’re announcing two important releases: <a href="https://modx.com/blog/revolution-3.1.1">the latest patch release of MODX Revolution, 3.1.1.</a> and <a href="https://modx.com/blog/generative-ai-content-for-modx-revolution-with-modai">the first comprehensive generative AI Extra for MODX Revolution 3</a>.</p>
<p>Revo 3.1.1 brings a fresh collection of improvements to enhance system stability and user experience, and represents our ongoing commitment to refining and polishing the MODX platform.</p>
<ul>
<li><a href="https://modx.com/blog/revolution-3.1.1">Read the Complete Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.1.1-pl">Download Revolution 3.1.1</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a Revo 3.1.1 Cloud</a></li>
</ul>
<p><strong>modAi</strong> also debuted this week, representing MODX’s foray into the brave new world of generative AI. What began as a simple proof of concept rapidly went through a “bit” of feature creep and turned into something truly powerful, useful, and—in the long history of all things MODX—highly configurable: <a href="https://extras.modx.com/package/modai" class="inline-onebox">modAI 0.9.0-beta | MODX</a></p>
<p>TL;DR: <strong>modAI</strong> supports mixing and matching models (Claude, ChatGPT, Gemini, and custom AI gateways like Open WebUI), attaches to any text/textarea/image field in the Manager, and can have canned or freeform prompts to help you generate text, images, and alt tags faster than ever before. It also works with Image+ and SEO Suite, so you can finally nail crucial SEO content faster than ever before. All you need is an API key and a few good prompts.</p>
<p>If you have yet to explore MODX Revolution 3.x, then these two releases are an awesome place to start.</p>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-3-1-1-and-modai-released/8345">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-3-1-1-and-modai-released/8345</link>
          <pubDate>Fri, 21 Feb 2025 00:10:26 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-8345</guid>
          <source url="https://community.modx.com/t/revolution-3-1-1-and-modai-released/8345.rss">Revolution 3.1.1 and modAI Released</source>
        </item>
        <item>
          <title>Revolution 3.0.6 Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>Happy December, folks! Today we’re <a href="https://modx.com/blog/revolution-3.0.6">announcing the latest patch release of MODX Revolution, 3.0.6.</a></p>
<p>It brings a fresh collection of improvements to enhance system stability and user experience. From resolving the upgrade version display in the Manager to fixing thumbnail challenges with complex filenames, PHP 8.4 compatibility to updated Lexicons, version 3.0.6 represents our ongoing commitment to refining and polishing the MODX platform.</p>
<ul>
<li><a href="https://modx.com/blog/revolution-3.0.6">Read the Complete Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.0.6-pl">Download Revolution 3.0.6</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a Revo 3.0.6 Cloud</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-3-0-6-released/8210">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-3-0-6-released/8210</link>
          <pubDate>Mon, 09 Dec 2024 20:48:27 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-8210</guid>
          <source url="https://community.modx.com/t/revolution-3-0-6-released/8210.rss">Revolution 3.0.6 Released</source>
        </item>
        <item>
          <title>MODX Login Extra PHP Object Injection Vulnerability</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Security Notices</category>
          <description><![CDATA[
            <h2><a name="p-33100-overview-1" class="anchor" href="https://community.modx.com#p-33100-overview-1" aria-label="Heading link"></a>Overview</h2>
<ul>
<li><strong>Project</strong>: <a href="https://extras.modx.com/package/login">Login Extra</a></li>
<li><strong>CVE ID</strong>: <a href="https://www.cve.org/CVERecord?id=CVE-2024-55039">CVE-2024-55039</a> (pending)</li>
<li><strong>Affected Versions</strong>: 1.5.2 through 1.9.13</li>
<li><strong>Fixed Version</strong>: <a href="https://extras.modx.com/package/login?version=1.9.14-pl">1.9.14</a></li>
<li><strong>Release Date</strong>: 2024-11-22</li>
<li><strong>Severity</strong>: Critical</li>
<li><strong>CVSS v4.0 Score</strong>: 9.4</li>
<li><strong>CVSS v4.0 Vector</strong>: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H</li>
</ul>
<h2><a name="p-33100-vulnerability-details-2" class="anchor" href="https://community.modx.com#p-33100-vulnerability-details-2" aria-label="Heading link"></a>Vulnerability Details</h2>
<h3><a name="p-33100-type-3" class="anchor" href="https://community.modx.com#p-33100-type-3" aria-label="Heading link"></a>Type</h3>
<p>Remote Code Execution (RCE) via PHP Object Injection</p>
<h3><a name="p-33100-description-4" class="anchor" href="https://community.modx.com#p-33100-description-4" aria-label="Heading link"></a>Description</h3>
<p>A critical vulnerability has been identified in the MODX Login Extra that allows arbitrary PHP code execution through PHP Object Injection. The vulnerability stems from unsafe deserialization of user-supplied data using PHP’s <code>unserialize()</code> function without proper sanitization.</p>
<h3><a name="p-33100-attack-vector-5" class="anchor" href="https://community.modx.com#p-33100-attack-vector-5" aria-label="Heading link"></a>Attack Vector</h3>
<p>An authenticated user, regardless of their permission level, can exploit this vulnerability by submitting specially crafted data through the Login form. The vulnerability can be triggered when:</p>
<ol>
<li>The system processes user input through the Login form</li>
<li>The malicious payload is passed to the unsafe <code>unserialize()</code> function</li>
<li>The resulting PHP object injection leads to arbitrary code execution</li>
</ol>
<h2><a name="p-33100-affected-systems-6" class="anchor" href="https://community.modx.com#p-33100-affected-systems-6" aria-label="Heading link"></a>Affected Systems</h2>
<p>The vulnerability affects MODX Revolution installations that meet ALL of the following criteria:</p>
<ol>
<li>Have the Login Extra installed (versions 1.5.2 to 1.9.13)</li>
<li>Have a web-accessible login form using the Login Extra</li>
<li>Allow user authentication</li>
</ol>
<p><strong>Note</strong>: Systems with Registration forms using the Login Extra may be particularly vulnerable if user validation is not required.</p>
<h2><a name="p-33100-mitigation-7" class="anchor" href="https://community.modx.com#p-33100-mitigation-7" aria-label="Heading link"></a>Mitigation</h2>
<p><strong>Immediate Update Required</strong>: Upgrade <a href="https://extras.modx.com/package/login?version=1.9.14-pl">Login Extra to version 1.9.14</a> or later using the MODX Extras Installer in your MODX Revolution Projects.</p>
<h2><a name="p-33100-technical-details-8" class="anchor" href="https://community.modx.com#p-33100-technical-details-8" aria-label="Heading link"></a>Technical Details</h2>
<p>The vulnerability exists due to:</p>
<ul>
<li>Unsafe usage of PHP’s <code>unserialize()</code> function</li>
<li>Lack of input validation before deserialization</li>
<li>Insufficient permission checking in the login process</li>
</ul>
<h2><a name="p-33100-credits-9" class="anchor" href="https://community.modx.com#p-33100-credits-9" aria-label="Heading link"></a>Credits</h2>
<ul>
<li><strong>Discovery</strong>: <a href="https://www.mcdruid.co.uk">Drew Webber</a></li>
<li><strong>Resolution</strong>: <a href="https://github.com/jako">Thomas Jakobi</a> and <a href="https://github.com/theboxer">John Peca</a></li>
<li><strong>Coordination</strong>: MODX Security Team</li>
</ul>
<h2><a name="p-33100-timeline-10" class="anchor" href="https://community.modx.com#p-33100-timeline-10" aria-label="Heading link"></a>Timeline</h2>
<ul>
<li><strong>Discovery Date</strong>: 2024-11-22</li>
<li><strong>Fix Development</strong>: 2024-11-22</li>
<li><strong>Public Disclosure</strong>: 2024-11-22</li>
</ul>
<h2><a name="p-33100-references-11" class="anchor" href="https://community.modx.com#p-33100-references-11" aria-label="Heading link"></a>References</h2>
<ul>
<li>MODX Security Team Contact: <a>Security Team</a></li>
<li>Fixed Version Download: <a href="https://extras.modx.com/package/login?version=1.9.14-pl">Login 1.9.14</a></li>
</ul>
<h2><a name="p-33100-revision-history-12" class="anchor" href="https://community.modx.com#p-33100-revision-history-12" aria-label="Heading link"></a>Revision History</h2>
<ul>
<li><strong>2024-11-22</strong>: Initial advisory publication</li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/modx-login-extra-php-object-injection-vulnerability/8174">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/modx-login-extra-php-object-injection-vulnerability/8174</link>
          <pubDate>Fri, 22 Nov 2024 21:57:00 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-8174</guid>
          <source url="https://community.modx.com/t/modx-login-extra-php-object-injection-vulnerability/8174.rss">MODX Login Extra PHP Object Injection Vulnerability</source>
        </item>
        <item>
          <title>Revolution 2.8.8 Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>On Thursday, Nov 21, 2024, we released MODX Revolution 2.8.8. This patch release addresses critical compatibility and functionality challenges, including resolving issues with rendering user-entered values in editable listbox-multiple Template Variables and updating the search processor for content-based search.</p>
<p>If your site is running the 2.x version of of MODX Revolution, this should be considered a must-<a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.8-pl">upgrade</a> release—especially to ensure your site remains compatible with recent PHP releases.</p>
<ul>
<li><a href="https://modx.com/blog/modx-revolution-2.8.8">Read the Complete Release Announcement </a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.8-pl">Download Revolution 2.8.8 </a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a Revo 2.8.8 Cloud </a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-2-8-8-released/8170">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-2-8-8-released/8170</link>
          <pubDate>Thu, 21 Nov 2024 20:53:26 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-8170</guid>
          <source url="https://community.modx.com/t/revolution-2-8-8-released/8170.rss">Revolution 2.8.8 Released</source>
        </item>
        <item>
          <title>Revolution 3.0.5 Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>Happy April, folks. We’d like to <a href="https://modx.com/blog/revolution-3.0.5">announce the latest patch release of MODX Revolution, 3.0.5</a>.</p>
<p>This release includes some quality of life and user interface improvements for site managers and developers including a fix for the datepicker on Resources created in Revo 2.x, the addition of the displaying the username on the confirmation screen of a password change, as well as many more under-the-hood performance and operational improvements and fixes.</p>
<ul>
<li><a href="https://modx.com/blog/revolution-3.0.5">Read the Complete Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.0.5-pl">Download Revolution 3.0.5</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a Revo 3.0.5 Cloud</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-3-0-5-released/7700">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-3-0-5-released/7700</link>
          <pubDate>Tue, 16 Apr 2024 20:47:23 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>No</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-7700</guid>
          <source url="https://community.modx.com/t/revolution-3-0-5-released/7700.rss">Revolution 3.0.5 Released</source>
        </item>
        <item>
          <title>Revolution 2.8.7 Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>On April 9, 2024, we <a href="https://modx.com/blog/revolution-2.8.7">released MODX Revolution 2.8.7</a>. This patch release of Revo 2, addresses PHP compatibility—especially with image previews across PHP 7.4 and 8.x. In addition to the PHP-related updates, a few other good old fashioned bugs were purged. The end result is a lot smaller error log and a much improved UX that content editors can enjoy.</p>
<p>If your site is running the 2.x version of of MODX Revolution, this should be considered a must-<a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.7-pl">upgrade</a> release—especially to ensure your site remains compatible with recent PHP releases.</p>
<ul>
<li><a href="https://modx.com/blog/revolution-2.8.7">Read the Complete Release Announcement </a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.7-pl">Download Revolution 2.8.7 </a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a Revo 2.8.7 Cloud </a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-2-8-7-released/7699">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-2-8-7-released/7699</link>
          <pubDate>Tue, 16 Apr 2024 20:41:20 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-7699</guid>
          <source url="https://community.modx.com/t/revolution-2-8-7-released/7699.rss">Revolution 2.8.7 Released</source>
        </item>
        <item>
          <title>Revolution 3.0.4 Released</title>
          <dc:creator><![CDATA[rthrash]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>Today we released <a href="https://modx.com/blog/revolution-3.0.4">MODX Revolution 3.0.4</a>. <strong>All users of 3.0.3 and earlier are encouraged to <a href="https://modx.com/download/other-versions?releaseKey=revolution-3.0.4-pl">upgrade to this release</a>.</strong></p>
<p>This release improves user and developer experience, augments security, cleans up many legacy code issues, updates key dependencies used in MODX Revolution, and resolves numerous minor bugs.</p>
<ul>
<li><a href="https://modx.com/blog/revolution-3.0.4">Read the Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.0.4-pl">Download MODX Revolution 3.0.4</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a Revo 3.0.4 Website in MODX Cloud</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-3-0-4-released/7108">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-3-0-4-released/7108</link>
          <pubDate>Tue, 03 Oct 2023 22:25:43 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-7108</guid>
          <source url="https://community.modx.com/t/revolution-3-0-4-released/7108.rss">Revolution 3.0.4 Released</source>
        </item>
        <item>
          <title>Revolution 2.8.6 Released</title>
          <dc:creator><![CDATA[rthrash]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>On September 28, 2023, we released <a href="https://modx.com/blog/modx-revolution-2.8.6-released">MODX Revolution 2.8.6</a>. <strong>All users of 2.8.5 and earlier are encouraged to <a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.6-pl">upgrade to this release</a>.</strong></p>
<p>If you’re a fan of safer websites, and fewer PHP errors and warnings with modern PHP, then this is a great release for you. It improves security, improves PHP 8.x compatibility, updates phpThumb and Smarty (key libraries used in MODX Revolution), and addresses various minor bug fixes.</p>
<ul>
<li><a href="https://modx.com/blog/modx-revolution-2.8.6-released">Read the Complete Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.6-pl">Download Revolution 2.8.6</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a Revo 2.8.6 Cloud</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-2-8-6-released/7105">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-2-8-6-released/7105</link>
          <pubDate>Mon, 02 Oct 2023 19:37:41 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-7105</guid>
          <source url="https://community.modx.com/t/revolution-2-8-6-released/7105.rss">Revolution 2.8.6 Released</source>
        </item>
        <item>
          <title>MODX.com Site Maintenance</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Announcements</category>
          <description><![CDATA[
            <p>On Wednesday, April 26, 2023, starting at 10 AM US Eastern Time (14:00 UTC) we will perform maintenance on the <a href="http://modx.com">modx.com</a> systems that are part of the MODX Extras system. This operation requires we temporarily disable the following at <a href="http://MODX.com">MODX.com</a>:</p>
<ul>
<li>logins to the forum</li>
<li>new user registrations</li>
<li>submitting or editing Extras listings,</li>
<li>changes to user profiles and passwords, and</li>
<li>submitting Contributor License Agreements (CLA).</li>
</ul>
<p>We’re taking these steps to modernize the back-end systems, to improve performance and functionality, and to allow adding new features to Extras and the broader community user management infrastructure.</p>
<p>This maintenance operation will not impact MODX Cloud or searching and downloading Extras in MODX installations.</p>
<p>The maintenance window is estimated to be no longer than 6 hours. If you’d like to follow the progress of and be notified of the completion, you may wish to subscribe to the scheduled maintenance notice on our <a href="https://status.modx.com/details/08cb02e7faf2a">Status Page</a>.</p>
            <p><small>1 post - 2 participants</small></p>
            <p><a href="https://community.modx.com/t/modx-com-site-maintenance/6662">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/modx-com-site-maintenance/6662</link>
          <pubDate>Mon, 24 Apr 2023 20:46:55 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-6662</guid>
          <source url="https://community.modx.com/t/modx-com-site-maintenance/6662.rss">MODX.com Site Maintenance</source>
        </item>
        <item>
          <title>MODX.com Site Maintenance</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Announcements</category>
          <description><![CDATA[
            <p>On Thursday, April 6, 2023, starting at 10 AM US Eastern Time (14:00 UTC) we will perform maintenance on the <a href="http://modx.com">modx.com</a> systems that are part of the MODX Extras system. This operation requires we temporarily disable the following at <a href="http://MODX.com">MODX.com</a>:</p>
<ul>
<li>new user registrations</li>
<li>submitting or editing Extras listings,</li>
<li>changes to user profiles and passwords, and</li>
<li>submitting Contributor License Agreements (CLA).</li>
</ul>
<p>We’re taking these steps to modernize the back-end systems, to improve performance and functionality, and to allow adding new features to Extras and the broader community user management infrastructure.</p>
<p>This maintenance operation will not impact MODX Cloud or searching and downloading Extras in MODX installations.</p>
<p>The maintenance window is estimated to be no longer than 6 hours. If you’d like to follow the progress of and be notified of the completion, you may wish to subscribe to the scheduled maintenance notice on our <a href="https://status.modx.com/details/2d8b8ed8a54d0">Status Page</a>.</p>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/modx-com-site-maintenance/6608">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/modx-com-site-maintenance/6608</link>
          <pubDate>Wed, 05 Apr 2023 12:44:13 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-6608</guid>
          <source url="https://community.modx.com/t/modx-com-site-maintenance/6608.rss">MODX.com Site Maintenance</source>
        </item>
        <item>
          <title>Revolution 2.8.5 Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>Today we released the 5th patch of <a href="https://modx.com/blog/revolution-2.8.5">MODX Revolution 2.8</a>. Revolution 2.8.5 updates phpThumb, adds support to display WebP images in the Media Browser, and various minor bug fixes. <strong>All users of 2.8.4 and earlier should <a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.5-pl">upgrade to this release</a> if you are not ready to <a href="https://modx.com/download/other-versions?releaseKey=revolution-3.0.2-pl">upgrade to MODX Revolution 3.0</a> just yet.</strong></p>
<ul>
<li><a href="https://modx.com/blog/revolution-2.8.5">Read the Complete Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.5-pl">Download Revolution 2.8.5</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a Revo 2.8.5 Cloud</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-2-8-5-released/6499">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-2-8-5-released/6499</link>
          <pubDate>Tue, 07 Mar 2023 15:46:23 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-6499</guid>
          <source url="https://community.modx.com/t/revolution-2-8-5-released/6499.rss">Revolution 2.8.5 Released</source>
        </item>
        <item>
          <title>Revolution 3.0.3 Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>Today we released Revolution 3.0.3. In this release we’ve fixed a number of bugs as well as updated some important dependency libraries. This will hopefully improve your experience working with and building in Revo. See the changelog in the official release announcement for specific bug fixes and additions.</p>
<p><strong>An important reminder about upgrading to Revo 3</strong>: we strongly urge you to carefully read <a href="https://docs.modx.com/3.x/en/getting-started/upgrading-to-3.0">the upgrade guide</a> before making the leap—there are many significant changes under the hood and a few of your favorite Extras may not yet be fully compatible. <strong>You should test upgrades on a clone of your site, first, when upgrading from our older 2.x branch.</strong></p>
<p>Before upgrading from Revo 2.x to 3.0.3, please review the <a href="https://docs.modx.com/3.x/en/getting-started/upgrading-to-3.0">upgrade guide</a>.</p>
<ul>
<li><a href="https://modx.com/blog/revolution-3.0.3">Read the Complete Revo 3.0.3 Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.0.3-pl">Download Revo 3.0.3</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a new Revo 3.0.3 Cloud</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-3-0-3-released/6291">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-3-0-3-released/6291</link>
          <pubDate>Wed, 18 Jan 2023 18:44:45 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-6291</guid>
          <source url="https://community.modx.com/t/revolution-3-0-3-released/6291.rss">Revolution 3.0.3 Released</source>
        </item>
        <item>
          <title>Revolution 3.0.2 Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>MODX Revolution 3.0 has proven to be one of our best releases ever. In Revolution 3.0.2, some notable fixes and enhancements include enabling SVGs preview thumbnails for image TVs, adding support for WebP images in the Media Browser, and fixing various PHP compatibility issues and UX fixes for a number of views and inputs.</p>
<p><strong>An important reminder about upgrading to Revo 3</strong>: we strongly urge you to carefully read <a href="https://docs.modx.com/3.x/en/getting-started/upgrading-to-3.0">the upgrade guide</a> before making the leap—there are many significant changes under the hood and a few of your favorite Extras may not yet be fully compatible. <strong>You should test upgrades on a clone of your site, first, when upgrading from our older 2.x branch.</strong></p>
<p>Before upgrading from Revo 2.x to 3.0.2, please review the <a href="https://docs.modx.com/3.x/en/getting-started/upgrading-to-3.0">upgrade guide</a>.</p>
<ul>
<li><a href="https://modx.com/blog/revolution-3.0.2">Read the Complete Revo 3.0.2 Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.0.2-pl">Download Revo 3.0.2</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a new Revo 3.0.2 Cloud</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-3-0-2-released/6075">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-3-0-2-released/6075</link>
          <pubDate>Thu, 24 Nov 2022 15:32:19 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-6075</guid>
          <source url="https://community.modx.com/t/revolution-3-0-2-released/6075.rss">Revolution 3.0.2 Released</source>
        </item>
        <item>
          <title>Save Big in Cloud with MODXpo Online Tickets</title>
          <dc:creator><![CDATA[rthrash]]></dc:creator>
          <category>Announcements</category>
          <description><![CDATA[
            <p>MODXpo ’22 happens this Friday, July 8th, and you still have time to get online tickets for just €35 (about $36). With <a href="https://modmore.com/modxpo-2022/schedule-speakers/">an awesome lineup of speakers</a>, it’s one not to miss. For those in different time zones or with a conflict, you’ll have exclusive online access to replay the sessions for 30-days after the conference, so get your tickets today.</p>
<p><a href="https://tickets.modmore.com/video-tickets/" class="onebox" target="_blank" rel="noopener">https://tickets.modmore.com/video-tickets/</a></p>
<p>As an added bonus, we’re giving all in-person or online ticket purchasers 50% off a new MODX Cloud Base plan for a year, or for existing users, a free year of CDN/WAF for any site that doesn’t already have one … a savings of $180-240—so hurry and get your tickets while you can! <img src="https://community.modx.com/images/emoji/apple/money_mouth_face.png?v=12" title=":money_mouth_face:" class="emoji" alt=":money_mouth_face:" loading="lazy" width="20" height="20"></p>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/save-big-in-cloud-with-modxpo-online-tickets/5543">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/save-big-in-cloud-with-modxpo-online-tickets/5543</link>
          <pubDate>Wed, 06 Jul 2022 15:30:23 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>No</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-5543</guid>
          <source url="https://community.modx.com/t/save-big-in-cloud-with-modxpo-online-tickets/5543.rss">Save Big in Cloud with MODXpo Online Tickets</source>
        </item>
        <item>
          <title>Revolution 3.0.1 and 2.8.4 Released</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p>Today we’re delighted to announce two releases of MODX Revolution. The first patch of our month-old Revo 3, for those who’ve taken the leap, and the latest patch of Revo 2.</p>
<h3><a name="p-20139-revo-301-1" class="anchor" href="https://community.modx.com#p-20139-revo-301-1" aria-label="Heading link"></a>Revo 3.0.1</h3>
<p>While our initial release of <a href="https://modx.com/blog/modx-revolution-3.0.0">MODX Revolution 3.0</a> has proven to be one of our best releases ever, there were some areas that needed attention. With that in mind, our first patch release is here, just under a month after its initial debut.</p>
<p>Before upgrading from Revo 2.x to 3.0.1, please review the <a href="https://docs.modx.com/3.x/en/getting-started/upgrading-to-3.0">upgrade guide</a>.</p>
<ul>
<li><a href="https://modx.com/blog/modx-revolution-3.0.1">Read the Complete Revo 3.0.1 Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.0.1-pl">Download Revo 3.0.1</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a new Revo 3.0.1 Cloud</a></li>
</ul>
<h3><a name="p-20139-revo-284-2" class="anchor" href="https://community.modx.com#p-20139-revo-284-2" aria-label="Heading link"></a>Revo 2.8.4</h3>
<p>This 2.8.4 release focuses on a few bugs, updates dependencies, and improves compatibility with newer versions of PHP. All users of the 2.8.3 and earlier should upgrade to this release if you are not ready to upgrade to MODX Revolution 3.0.1, just yet.</p>
<ul>
<li><a href="https://modx.com/blog/modx-revolution-2.8.4">Read the Complete Revo 2.8.4 Release Announcement</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-2.8.4-pl">Download Revo 2.8.4</a></li>
<li><a href="https://dashboard.modxcloud.com/dashboard/cloud/new">Create a new Revo 2.8.4 Cloud</a></li>
</ul>
<h3><a name="p-20139-need-help-upgrading-3" class="anchor" href="https://community.modx.com#p-20139-need-help-upgrading-3" aria-label="Heading link"></a>Need Help Upgrading?</h3>
<p>If you’re not sure how to upgrade but would like to get your site onto the latest version of MODX Revolution, check out the <a href="https://modx.com/help">MODX Garage and Speed Shop</a> to contact the MODX team for expert assistance. We can advise you of your options.</p>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/revolution-3-0-1-and-2-8-4-released/5284">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/revolution-3-0-1-and-2-8-4-released/5284</link>
          <pubDate>Thu, 28 Apr 2022 19:04:31 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-5284</guid>
          <source url="https://community.modx.com/t/revolution-3-0-1-and-2-8-4-released/5284.rss">Revolution 3.0.1 and 2.8.4 Released</source>
        </item>
        <item>
          <title>MODX Revolution 3.0.0 Now Out! 🚀</title>
          <dc:creator><![CDATA[smashingred]]></dc:creator>
          <category>Releases</category>
          <description><![CDATA[
            <p><strong>On behalf of the MODX Team, contributors and the entire worldwide community who build on and succeed with MODX Revolution, we’re proud to announce the official release of MODX Revolution 3.0.0-pl.</strong></p>
<p>MODX Revolution is a major update that delivers a new Manager with big UX improvements, modernizes the codebase by adopting modern coding practices including leveraging Composer and provides the foundation for the next innovations in the CMS space.</p>
<p></p><div class="lightbox-wrapper"><a class="lightbox" href="//modx-community.s3.dualstack.us-east-1.amazonaws.com/original/2X/5/5a351d841c9c58ff147b2b9c51bb23fdf565a22f.jpeg" data-download-href="/uploads/short-url/cS0LP1PPnNFm67yULkTip3AXxTh.jpeg?dl=1" title="modx-revolution-3-login-laptop"><img src="//modx-community.s3.dualstack.us-east-1.amazonaws.com/optimized/2X/5/5a351d841c9c58ff147b2b9c51bb23fdf565a22f_2_690x425.jpeg" alt="modx-revolution-3-login-laptop" data-base62-sha1="cS0LP1PPnNFm67yULkTip3AXxTh" width="690" height="425" srcset="//modx-community.s3.dualstack.us-east-1.amazonaws.com/optimized/2X/5/5a351d841c9c58ff147b2b9c51bb23fdf565a22f_2_690x425.jpeg, //modx-community.s3.dualstack.us-east-1.amazonaws.com/optimized/2X/5/5a351d841c9c58ff147b2b9c51bb23fdf565a22f_2_1035x637.jpeg 1.5x, //modx-community.s3.dualstack.us-east-1.amazonaws.com/optimized/2X/5/5a351d841c9c58ff147b2b9c51bb23fdf565a22f_2_1380x850.jpeg 2x" data-dominant-color="88898C"></a></div><p></p>
<p>If you are a growing organization that wants the fastest, most secure, and most flexible platform for your online presence, then you need to look no further than MODX Revolution 3.0.</p>
<ul>
<li><a href="https://modx.com/blog/modx-revolution-3.0.0">Read the full release blog</a></li>
<li><a href="https://docs.modx.com/3.x/en/getting-started/upgrading-to-3.0">Learn about upgrading to MODX Revolution 3.0</a></li>
<li><a href="https://modx.com/download/other-versions?releaseKey=revolution-3.0.0-pl">Download MODX Revolution 3.0</a></li>
</ul>
            <p><small>1 post - 1 participant</small></p>
            <p><a href="https://community.modx.com/t/modx-revolution-3-0-0-now-out/5121">Read full topic</a></p>
          ]]></description>
          <link>https://community.modx.com/t/modx-revolution-3-0-0-now-out/5121</link>
          <pubDate>Wed, 30 Mar 2022 17:37:24 +0000</pubDate>
          <discourse:topicPinned>No</discourse:topicPinned>
          <discourse:topicClosed>Yes</discourse:topicClosed>
          <discourse:topicArchived>No</discourse:topicArchived>
          <guid isPermaLink="false">community.modx.com-topic-5121</guid>
          <source url="https://community.modx.com/t/modx-revolution-3-0-0-now-out/5121.rss">MODX Revolution 3.0.0 Now Out! 🚀</source>
        </item>
  </channel>
</rss>
