Rayd Forums » RAYD Discussion

Wordpress Security Update Today 2-5-2008

(5 posts)
  • Started 2 years ago by Ardentfrost
  • Latest reply from Lewnatick

  1. WordPress 2.3.3 is an urgent security release. A flaw was found in our XML-RPC implementation such that a specially crafted request would allow any valid user to edit posts of any other user on that blog. In addition to fixing this security flaw, 2.3.3 fixes a few minor bugs. If you are interested only in the security fix, download the fixed version of xmlrpc.php and copy it over your existing xmlrpc.php. Otherwise, you can get the entire release here.

    Also, there is a vulnerability in the WP-Forum plugin that is being actively exploited right now. If you are using this plugin, please remove it until an update is available.

    Since we are talking security, remember to use strong passwords and change them regularly. While you’re updating WP and your plugins, consider refreshing your passwords.


    Everyone might want to perform this upgrade on their sites.

    Posted 2 years ago #
  2. Link where we can get it, for those of us too lazy to look it up?

    Posted 2 years ago #
  3. http://wordpress.org

    Posted 2 years ago #
  4. too many clicks. I found it, but I was looking for instant clickage gratification.

    Posted 2 years ago #
  5. UPGRADE'D!

    Posted 2 years ago #

RSS feed for this topic

Reply

You must log in to post.