well, since the last CSRF Vulnerability forces an upgrade that breaks the login API, I was worried that the LdapAuthentification plugin may be broken with this update.
I'm not really proficient with php and/or mediawiki so I'm not sure that this extension uses the login API described in this bug.
Though it would make sense so I'm wondering: is the upgrade "safe" regarding the ldapauth extenion?
and if "yes" which version of this extension is "ready" for this new API?
regards.