Matt Mullenweg has released Wordpress 2.6.5 an open source (GPL) blog engine based on PHP and MySQL.
Blogger :
Cafe con Leche
All posts :
All posts by Cafe con Leche
Category :
XML
Blogged date : 2008 Nov 26
Matt Mullenweg has released Wordpress 2.6.5 an open source (GPL) blog engine based on PHP and MySQL. This is yet another security fix. "The security issue is an XSS exploit discovered by Jeremias Reith that fortunately only affects IP-based virtual servers running on Apache 2.x. If you are interested only in the security fix, copy wp-includes/feed.php and wp-includes/version.php from the 2.6.5 release package. 2.6.5 contains three other small fixes in addition to the XSS fix. The first prevents accidentally saving post meta information to a revision. The second prevents XML-RPC from fetching incorrect post types. The third adds some user ID sanitization during bulk delete requests."
Read comments or post a reply to : Matt Mullenweg has released Wordpress 2.6.5 an open source (GPL) blog engine based on PHP and MySQL.