- [Feature] Added optional referer validation of POST requests as additional CSRF protection.
- [Feature] Added optional stricter upload validation to avoid mime sniffing in addition to the safeguards provided by file.php. (thanks to Nicolas Grekas for compiling the list).
- [Feature] Streamlined banning via the MCP by adding a ban link to the user profile. Also pre-fills ban fields as far as possible.
- [Feature] Added ACP logout to reset an admin session.
