<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>

<channel>
	<title>Social Web CMS</title>
	<atom:link href="http://socialwebcms.com/blog/?feed=rss2" rel="self" type="application/rss+xml" />
	<link>http://socialwebcms.com/blog</link>
	<description>The FREE (as in beer and speech) open source social news platform.</description>
	<pubDate>Wed, 25 Feb 2009 16:17:21 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>SWCMS Subscribe to Comments Module</title>
		<link>http://socialwebcms.com/blog/?p=90</link>
		<comments>http://socialwebcms.com/blog/?p=90#comments</comments>
		<pubDate>Wed, 25 Feb 2009 16:16:29 +0000</pubDate>
		<dc:creator>Nick Ramsay</dc:creator>
		
		<category><![CDATA[General]]></category>

		<category><![CDATA[comments]]></category>

		<category><![CDATA[module]]></category>

		<category><![CDATA[roadmap]]></category>

		<category><![CDATA[subscribe]]></category>

		<guid isPermaLink="false">http://socialwebcms.com/blog/?p=90</guid>
		<description><![CDATA[One of the best ways to encourage continued participation on a Social Web CMS site is by giving users the option to subscribe to comments. There have been hacks in the past that would allow the person submitting a story to receive email notification when a comment is posted on it, but until now, there [...]]]></description>
			<content:encoded><![CDATA[<p>One of the best ways to encourage continued participation on a <a title="Social Web CMS" href="http://www.socialwebcms.com/index.php">Social Web CMS</a> site is by giving users the option to subscribe to comments. There have been hacks in the past that would allow the person submitting a story to receive email notification when a comment is posted on it, but until now, there hasn&#8217;t been a way for regular commentators to also subscribe to a comment thread.</p>
<p><a title="Subscribe to Comments in the SWCMS forums" href="http://forums.socialwebcms.com/index.php?topic=653.0">Subscribe to Comments</a> is a new module for SWCMS and one of the features on our <a title="Social Web CMS Roadmap" href="http://www.socialwebcms.com/roadmap.php">Roadmap</a> that I&#8217;ve especially wanted to see implemented. It works in a similar fashion to the <a title="Wordpress Subscribe to Comments" href="http://wordpress.org/extend/plugins/subscribe-to-comments/">Wordpress plugin</a> of the same name, which you can see on this very blog. In SWCMS, a checkbox is added to the comment form, enabling each user to subscribe. Likewise, the story author can subscribe during the submission process, or afterwards in the comment section. When a comment is made, the full content of that comment is emailed to you, along with the obligatory &#8220;unsubscribe&#8221; notice.</p>
<p>The current version is 0.2, and I&#8217;m keen to get some feedback and work out any bugs. If you think your users will enjoy this module, come and <a title="Subscribe to Comments in the SWCMS forums" href="http://forums.socialwebcms.com/index.php?topic=653.0">grab the download</a> from the Social Web CMS forums.</p>
<p>Nick Ramsay</p>
]]></content:encoded>
			<wfw:commentRss>http://socialwebcms.com/blog/?feed=rss2&amp;p=90</wfw:commentRss>
		</item>
		<item>
		<title>Module Store Update</title>
		<link>http://socialwebcms.com/blog/?p=88</link>
		<comments>http://socialwebcms.com/blog/?p=88#comments</comments>
		<pubDate>Mon, 23 Feb 2009 04:19:21 +0000</pubDate>
		<dc:creator>Ash</dc:creator>
		
		<category><![CDATA[General]]></category>

		<category><![CDATA[bug fixes]]></category>

		<category><![CDATA[modules]]></category>

		<category><![CDATA[swcms]]></category>

		<guid isPermaLink="false">http://socialwebcms.com/blog/?p=88</guid>
		<description><![CDATA[If you&#8217;ve had problems with the Module Store (and you&#8217;re running SWCMS 1.1) please help us test out version 0.40. http://forums.socialwebcms.com/index.php?topic=219.msg2634#msg2634
]]></description>
			<content:encoded><![CDATA[<p>If you&#8217;ve had problems with the Module Store (and you&#8217;re running SWCMS 1.1) please help us test out version 0.40. <a href="http://forums.socialwebcms.com/index.php?topic=219.msg2634#msg2634">http://forums.socialwebcms.com/index.php?topic=219.msg2634#msg2634</a></p>
]]></content:encoded>
			<wfw:commentRss>http://socialwebcms.com/blog/?feed=rss2&amp;p=88</wfw:commentRss>
		</item>
		<item>
		<title>Pligg Default Captcha Vulnerability</title>
		<link>http://socialwebcms.com/blog/?p=84</link>
		<comments>http://socialwebcms.com/blog/?p=84#comments</comments>
		<pubDate>Fri, 30 Jan 2009 14:28:38 +0000</pubDate>
		<dc:creator>Ash</dc:creator>
		
		<category><![CDATA[General]]></category>

		<category><![CDATA[1.0]]></category>

		<category><![CDATA[9.9.5]]></category>

		<category><![CDATA[bug fixes]]></category>

		<category><![CDATA[bugs]]></category>

		<category><![CDATA[captcha]]></category>

		<category><![CDATA[pligg]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[swcms]]></category>

		<guid isPermaLink="false">http://socialwebcms.com/blog/?p=84</guid>
		<description><![CDATA[There was another vulnerability released yesterday targeting Pligg 9.9.5. If you&#8217;re running a clean install of SWCMS 1.0 or newer you won&#8217;t be affected. If you upgraded from Pligg you may still be affected. If you&#8217;re still using the &#8216;default&#8216; captcha method you should switch to WhiteHat or reCaptcha, and remove the /ts_image.php file (if [...]]]></description>
			<content:encoded><![CDATA[<p>There was another vulnerability released yesterday targeting Pligg 9.9.5. If you&#8217;re running a clean install of SWCMS 1.0 or newer you won&#8217;t be affected. If you <strong>upgraded</strong> from Pligg you <strong>may</strong> still be affected. If you&#8217;re still using the &#8216;<strong>default</strong>&#8216; captcha method you should switch to WhiteHat or reCaptcha, and remove the <strong>/ts_image.php</strong> file (if you have it). If you don&#8217;t have the <strong>/ts_image.php</strong> file, then you&#8217;re ok. <img src='http://socialwebcms.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
			<wfw:commentRss>http://socialwebcms.com/blog/?feed=rss2&amp;p=84</wfw:commentRss>
		</item>
		<item>
		<title>Stamp Out Spam with Submission Approval</title>
		<link>http://socialwebcms.com/blog/?p=78</link>
		<comments>http://socialwebcms.com/blog/?p=78#comments</comments>
		<pubDate>Sun, 25 Jan 2009 02:20:17 +0000</pubDate>
		<dc:creator>Nick Ramsay</dc:creator>
		
		<category><![CDATA[modules]]></category>

		<guid isPermaLink="false">http://socialwebcms.com/blog/?p=78</guid>
		<description><![CDATA[Social Web CMS has got a handful of excellent anti-spam modules, including Akismet, email registration and a choice of captchas, but one of my favorites is Submission Approval. Quite simply, when a new user tries to submit his or her first article, it gets put into moderation until approved by the site admin. Once approved, [...]]]></description>
			<content:encoded><![CDATA[<p>Social Web CMS has got a handful of excellent anti-spam modules, including Akismet, email registration and a choice of captchas, but one of my favorites is <a title="SWCMS Forums: Submission Approval" href="http://forums.socialwebcms.com/index.php?topic=414.0">Submission Approval</a>. Quite simply, when a new user tries to submit his or her first article, it gets put into moderation until approved by the site admin. Once approved, all subsequent submissions from the user are accepted automatically.</p>
<p>You might think the process of approving or denying new submissions manually would put off new users, but by the time they are notified that their posts will be moderated, they will have already completed the submission process. As soon as that happens, the site admin - you - will be emailed details of the new post showing the complete content and links to either approve it or deny the user. In fact, with just two clicks, the job is done.</p>
<p>If you&#8217;re always on the go and can&#8217;t sit at the computer all day waiting for new users to submit something, the module can be easily customized to send email notification to your cell phone. So you can be confident your site is always free of spam. Learn more about Submission Approval in the <a href="http://forums.socialwebcms.com/index.php?topic=414.0">Social Web CMS forums</a>.</p>
<p>- Nick (longcountdown)</p>
]]></content:encoded>
			<wfw:commentRss>http://socialwebcms.com/blog/?feed=rss2&amp;p=78</wfw:commentRss>
		</item>
		<item>
		<title>Testing 123 Testing&#8230;</title>
		<link>http://socialwebcms.com/blog/?p=76</link>
		<comments>http://socialwebcms.com/blog/?p=76#comments</comments>
		<pubDate>Wed, 14 Jan 2009 20:24:19 +0000</pubDate>
		<dc:creator>davemackey</dc:creator>
		
		<category><![CDATA[General]]></category>

		<category><![CDATA[development]]></category>

		<category><![CDATA[stable]]></category>

		<category><![CDATA[swcms]]></category>

		<category><![CDATA[test]]></category>

		<category><![CDATA[unit test]]></category>

		<guid isPermaLink="false">http://socialwebcms.com/blog/?p=76</guid>
		<description><![CDATA[Here at SWCMS security and stability are our two main priorities. One of the things we&#8217;re doing to address stability is Unit Testing with the PHP SimpleTest library. The test suite will be added to the Beta SVN shortly and you&#8217;ll see new tests added regularly.  The tests will be done mostly, if not exclusively, [...]]]></description>
			<content:encoded><![CDATA[<p>Here at SWCMS security and stability are our two main priorities. One of the things we&#8217;re doing to address stability is Unit Testing with the PHP SimpleTest library. The test suite will be added to the Beta SVN shortly and you&#8217;ll see new tests added regularly.  The tests will be done mostly, if not exclusively, on the Beta branch. The current Stable (1.x) branch will be slowly rewritten as we progress through versions 2.0, 3.0, 4.0 etc. Much of 1.x isn&#8217;t &#8220;testing friendly&#8221; but if you&#8217;d like to create tests for it please PM me in the forums.</p>
<p>- Ash</p>
]]></content:encoded>
			<wfw:commentRss>http://socialwebcms.com/blog/?feed=rss2&amp;p=76</wfw:commentRss>
		</item>
		<item>
		<title>Go Viral with SWCMS &#8220;Tweet This!&#8221; Module</title>
		<link>http://socialwebcms.com/blog/?p=72</link>
		<comments>http://socialwebcms.com/blog/?p=72#comments</comments>
		<pubDate>Sat, 10 Jan 2009 18:39:23 +0000</pubDate>
		<dc:creator>Nick Ramsay</dc:creator>
		
		<category><![CDATA[modules]]></category>

		<category><![CDATA[module]]></category>

		<category><![CDATA[plugin]]></category>

		<category><![CDATA[Tweet This]]></category>

		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://socialwebcms.com/blog/?p=72</guid>
		<description><![CDATA[One of my favorite modules for Social Web CMS is &#8220;Tweet This!&#8221;. It&#8217;s based on a popular Wordpress plugin by Richard X. Thripp which conveniently enables you to announce your latest blog posts to your followers on Twitter.
The SWCMS version places a &#8220;Tweet This!&#8221; link below each story on your site, and clicking it opens [...]]]></description>
			<content:encoded><![CDATA[<p>One of my favorite modules for Social Web CMS is &#8220;Tweet This!&#8221;. It&#8217;s based on a <a title="Tweet This for Wordpress" href="http://richardxthripp.thripp.com/tweet-this">popular Wordpress plugin</a> by Richard X. Thripp which conveniently enables you to announce your latest blog posts to your followers on Twitter.</p>
<p>The SWCMS version places a &#8220;Tweet This!&#8221; link below each story on your site, and clicking it opens Twitter with the title and a shortened version of the story&#8217;s url all ready for you to publish to your followers.</p>
<p>My Social Web CMS site usually only averages a handful of comments on each story, but recently, one topic was apparently so controversial that members of the site took advantage of &#8220;Tweet This!&#8221; to rally support from their Twitter followers. The result was <a title="Japan Turning Smoke Free" href="http://www.japansoc.com/News/japan-turning-smoke-free/">a whopping 59 comments</a> and a bunch of new members!</p>
<p><a title="Twitter" href="http://twitter.com">Twitter</a> has become a powerful medium for spreading a message and attracting attention. In <a title="SWCMS + Delicious" href="http://socialwebcms.com/blog/?p=69">a previous post</a>, we mentioned how one Twitter user with a following of 2,000+ users started a chain of &#8220;tweets&#8221; that led to the SWCMS site being bookmarked over 200 times on Delicious in just a few hours!</p>
<p>Thanks to user feedback from Landshark and Ditto, I&#8217;ve made some important fixes to our &#8220;Tweet This!&#8221; module in order to make it as reliable and easy to use as possible so all of us can benefit from Twitter.</p>
<p>You can learn more about and download <a title="SWCMS Forums: Tweet This!" href="http://forums.socialwebcms.com/index.php?topic=449.0">&#8220;Tweet This!&#8221; v.0.2</a> in the forums, and remember, if a popular Twitter user tweets a story from your site, it may just go viral!</p>
<p>(Nick Ramsay a.k.a longcountdown)</p>
]]></content:encoded>
			<wfw:commentRss>http://socialwebcms.com/blog/?feed=rss2&amp;p=72</wfw:commentRss>
		</item>
		<item>
		<title>Delicious!</title>
		<link>http://socialwebcms.com/blog/?p=69</link>
		<comments>http://socialwebcms.com/blog/?p=69#comments</comments>
		<pubDate>Fri, 09 Jan 2009 06:22:08 +0000</pubDate>
		<dc:creator>Ash</dc:creator>
		
		<category><![CDATA[General]]></category>

		<category><![CDATA[delicious]]></category>

		<category><![CDATA[tipd]]></category>

		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://socialwebcms.com/blog/?p=69</guid>
		<description><![CDATA[Our friends over at Tip`d noticed a sudden increase in SWCMS bookmarks at Delicious. We were bookmarked about 200 times in a short period of time.
http://delicious.com/url/add1b95d858893ec3c036e5685d1a8d0
Longcountdown did a little investigating and found a popular Twitter user (designmeme) ummm tweeted (is that the right word?) us.
http://twitter.com/designmeme/status/1104366196
]]></description>
			<content:encoded><![CDATA[<p>Our friends over at <a title="Tip`d" href="http://tipd.com">Tip`d</a> noticed a sudden increase in SWCMS bookmarks at Delicious. We were bookmarked about 200 times in a short period of time.</p>
<p><a href="http://delicious.com/url/add1b95d858893ec3c036e5685d1a8d0">http://delicious.com/url/add1b95d858893ec3c036e5685d1a8d0</a></p>
<p>Longcountdown did a little investigating and found a popular Twitter user (designmeme) ummm tweeted (is that the right word?) us.</p>
<p><a href="http://twitter.com/designmeme/status/1104366196">http://twitter.com/designmeme/status/1104366196</a></p>
]]></content:encoded>
			<wfw:commentRss>http://socialwebcms.com/blog/?feed=rss2&amp;p=69</wfw:commentRss>
		</item>
		<item>
		<title>SWCMS 1.1 Released (2.0 in progress)!</title>
		<link>http://socialwebcms.com/blog/?p=64</link>
		<comments>http://socialwebcms.com/blog/?p=64#comments</comments>
		<pubDate>Thu, 08 Jan 2009 22:51:01 +0000</pubDate>
		<dc:creator>davemackey</dc:creator>
		
		<category><![CDATA[Releases]]></category>

		<category><![CDATA[1.1]]></category>

		<category><![CDATA[2.0]]></category>

		<category><![CDATA[bugs]]></category>

		<category><![CDATA[features]]></category>

		<category><![CDATA[fixes]]></category>

		<category><![CDATA[maintenance]]></category>

		<category><![CDATA[module]]></category>

		<category><![CDATA[release]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[stability]]></category>

		<category><![CDATA[swcms]]></category>

		<category><![CDATA[templating]]></category>

		<guid isPermaLink="false">http://socialwebcms.com/blog/?p=64</guid>
		<description><![CDATA[We are excited to announce the immediate availability of SWCMS 1.1. This release is a maintenance release that does not include any new features, instead focusing on dozens of security and stability fixes across the framework.
With the release of 1.1 we are also happy to announce that 2.0 is well under way. It will include [...]]]></description>
			<content:encoded><![CDATA[<p>We are excited to announce the immediate availability of SWCMS 1.1. This release is a maintenance release that does not include any new features, instead focusing on dozens of security and stability fixes across the framework.</p>
<p>With the release of 1.1 we are also happy to announce that 2.0 is well under way. It will include a number of enhancements we&#8217;ll cover in detail in a soon-to-be-released post (for now, think simplified templating and a cleaner/faster module creation process). As of this time we intend to continue closing out any bugs or security issues that arise with the 1.0 release but most efforts (and the new features) will be coming with 2.0.</p>
<p>Download: <a href="http://www.assembla.com/spaces/yadc/documents/cuGM8I3Dyr3yAXab7jnrAJ/download?filename=SWCMS_v1_1.zip">http://www.assembla.com/spaces/yadc/documents/cuGM8I3Dyr3yAXab7jnrAJ/download?filename=SWCMS_v1_1.zip</a></p>
]]></content:encoded>
			<wfw:commentRss>http://socialwebcms.com/blog/?feed=rss2&amp;p=64</wfw:commentRss>
		</item>
		<item>
		<title>New Years Update</title>
		<link>http://socialwebcms.com/blog/?p=61</link>
		<comments>http://socialwebcms.com/blog/?p=61#comments</comments>
		<pubDate>Fri, 02 Jan 2009 03:08:25 +0000</pubDate>
		<dc:creator>Ash</dc:creator>
		
		<category><![CDATA[General]]></category>

		<category><![CDATA[development]]></category>

		<category><![CDATA[repository]]></category>

		<category><![CDATA[template]]></category>

		<category><![CDATA[updates]]></category>

		<guid isPermaLink="false">http://socialwebcms.com/blog/?p=61</guid>
		<description><![CDATA[Happy New Year!
Two posts ago we mentioned some template system changes that we&#8217;re working on. Here is a status update:
* Separating Back-End Admin Templates from Front-End User Templates. DONE.
* Separating Static Template Elements. DONE.
* Overall Template Modification vs. Page Details. DONE.
* Separation of Styling and Templates. In Progress.
* A template manager with concepts similar to [...]]]></description>
			<content:encoded><![CDATA[<p>Happy New Year!</p>
<p>Two posts ago we mentioned some template system changes that we&#8217;re working on. Here is a status update:</p>
<p>* Separating Back-End Admin Templates from Front-End User Templates. <strong>DONE.</strong><br />
* Separating Static Template Elements. <strong>DONE.</strong><br />
* Overall Template Modification vs. Page Details. <strong>DONE.</strong><br />
* Separation of Styling and Templates. <strong>In Progress.</strong><br />
* A template manager with concepts similar to the module store. <strong>Not Started</strong>.</p>
<p>If you&#8217;re interested,  the new system is available from the &#8216;Beta&#8217; branch in our SVN. The SVN link is: http://svn.assembla.com/svn/yadc/</p>
<p>New release soon! Within the next few days we&#8217;ll release a version 1.1 Stable. This version will not have any new features. This version will consist of a couple bug fixes and a few overall security improvements. We&#8217;ve also tackled a few more &#8216;Undefined Index&#8217; errors. This is a continuation of our goal to have a rock solid stable release.</p>
<p>We don&#8217;t yet have a release date for the next non-stable / beta version. There are numerous improvements that are being worked on and tested. If you&#8217;re interested in testing, no need to wait for an official release, feel free to checkout the Beta branch of the SVN at any time.</p>
]]></content:encoded>
			<wfw:commentRss>http://socialwebcms.com/blog/?feed=rss2&amp;p=61</wfw:commentRss>
		</item>
		<item>
		<title>SWCMS 1.0 / Pligg Beta 9.9.5 Exploit</title>
		<link>http://socialwebcms.com/blog/?p=53</link>
		<comments>http://socialwebcms.com/blog/?p=53#comments</comments>
		<pubDate>Wed, 24 Dec 2008 04:19:48 +0000</pubDate>
		<dc:creator>Ash</dc:creator>
		
		<category><![CDATA[General]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[bug]]></category>

		<category><![CDATA[cms]]></category>

		<category><![CDATA[fix]]></category>

		<category><![CDATA[hack]]></category>

		<category><![CDATA[hacker]]></category>

		<category><![CDATA[patch]]></category>

		<category><![CDATA[pligg]]></category>

		<category><![CDATA[swcms]]></category>

		<category><![CDATA[update]]></category>

		<category><![CDATA[vulnerability]]></category>

		<category><![CDATA[warning]]></category>

		<guid isPermaLink="false">http://socialwebcms.com/blog/?p=53</guid>
		<description><![CDATA[A new exploit was discovered yesterday that was created for Pligg&#8217;s Beta 9.9.5 but also affects all versions of SWCMS.  The current exploit creates a file that then executes PHP exec() commands. The exploit, more widely, can be used for the creation of files on a server hosting SWCMS / Pligg Beta 9.9.5.
The fix is [...]]]></description>
			<content:encoded><![CDATA[<p>A new exploit was discovered yesterday that was created for Pligg&#8217;s Beta 9.9.5 but also affects all versions of SWCMS.  The current exploit creates a file that then executes PHP exec() commands. The exploit, more widely, can be used for the creation of files on a server hosting SWCMS / Pligg Beta 9.9.5.</p>
<p>The fix is fairly simple. Open /evb/check_url.php.</p>
<p>After</p>
<blockquote><p>include(&#8217;../config.php&#8217;);</p></blockquote>
<p>add</p>
<blockquote><p>include(&#8217;../libs/html1.php&#8217;);</p></blockquote>
<p>and around line 36 replace</p>
<blockquote><p>$url = htmlspecialchars(strip_tags($_GET['url']));</p></blockquote>
<p>with</p>
<blockquote><p>$url = htmlspecialchars(sanitize($_GET['url'], 4));</p></blockquote>
<p>We&#8217;ll be reviewing the code to see if this particular vulnerability affects any other part of SWCMS and soon be releasing an updated version of the SWCMS Patcher that will include this fix. The fix above will correct both this specific exploit as well as the general vulnerability through evb to create rogue files.</p>
<p>To see if you&#8217;ve already been infected, see if you have a file named /libs/manager.php.</p>
<p>We&#8217;ll be setting up a mailing list and we&#8217;ve created a Twitter account http://twitter.com/SocialWebCMS to help keep you informed.</p>
]]></content:encoded>
			<wfw:commentRss>http://socialwebcms.com/blog/?feed=rss2&amp;p=53</wfw:commentRss>
		</item>
	</channel>
</rss>

