Tuesday, November 17, 2009

WordPress 2.8.6 security release


WordPress 2.8.6 fixes two security problems that can be exploited by registered, logged in users who have posting privileges. If you have untrusted authors on your blog, upgrading to 2.8.6 is recommended.

The first problem is an XSS vulnerability in Press This discovered by Benjamin Flesch. The second problem, discovered by Dawid Golunski, is an issue with sanitizing uploaded file names that can be exploited in certain Apache configurations. Thanks to Benjamin and Dawid for finding and reporting these.

Read More: Here

0 comments:

Post a Comment

Affiliates




Vote For Us

Users Online

Follow US


 

DISCLAIMER

None of the files shown here are hosted or transmitted by this server. The links are provided solely by this site's users. The administrator of this site (7Files) cannot be held responsible for what its users post, or any other actions of its users. You may not use this site to distribute or download any material when you do not have the legal rights to do so. It is your own responsibility to adhere to these terms.