Advanced Custom Fields version 6.8.3 is now available.

This release contains a security fix for the oEmbed field for both ACF and ACF PRO.

We recommend that all users of ACF and ACF PRO upgrade as soon as possible.

Wrap Up

👨‍💻 Please find the release notes below. And for the latest ACF news, follow us on Twitter @wp_acf.

We take the security of ACF extremely seriously and are always working on protecting our users. If you have discovered a vulnerability in the code or have a security issue, please see our Security page for more information.

Changelog

  • Security – The oEmbed field’s AJAX preview no longer performs URL discovery for users without the edit_posts capability.

For questions and help about this release, please contact our support team.