📜 ⬆️ ⬇️

Wordpress 2.8.6

Wordpress has been updated again .
I quote the developer blog:
Version 2.8.6 fixes two security issues that registered and authorized users with publishing rights could use. If there are third-party authors on your blog, we recommend upgrading to 2.8.6.

The first problem is the XSS vulnerability in the “Publish” tab (Press This), reported by Benjamin Flesch. The second one was discovered by Dawid Golunski - there was a flaw in processing the names of the downloaded files, which could be used on some Apache configurations.


Updating :)
')
By the way, xx.6 is not a record. There were versions to x.x.11 ;)

Source: https://habr.com/ru/post/75182/


All Articles