Wordpress 2.8.6 Released Hardening Wp Security

by Themepremium on November 13, 2009


Few days back I informed you about release of Wordpress 2.8.5 and soon we were expecting wordpress 2.9. Today it comes as a surprise when Wordpress released a quick update and launched wordpress 2.8.6.

The release of wordpress 2.8.6 is a quick security fix against two known bugs in wordpress blog. Specially if you have multi author blog with uploading capabilities. Here is what official announcement has to say about the latest release of WP 2.8.6

The first problem is an XSS vulnerability in Press This discovered by Benjamin Flesch.  The second problem, discovered by Dawid Golunski, is an issue with sanitizing uploaded file names that can be exploited in certain Apache configurations.

So it doesn’t matter if a bug is small of big, a security vulnerability is always a hole in your tent. So take a full backup of your wordpress database and update your blog to latest version.

Related posts:

  1. Wordpress 2.8.5 Released Before Wordpress 2.9
  2. Wordpress 2.9.2 released Fix Trash Security Issue
  3. Wordpress Security: Restrict wp-content and wp-includes on wordpress using htaccess
  4. Wordpress Security Tip : Avoid Using admin as username
  5. Download Wordpress 2.9.1 To Fix Many Wordpress 2.9 Bugs

WooThemes - WordPress themes for everyone

Leave a Comment

Previous post:

Next post:

.