WordPress 2.8.6 Security Release

by Tran Tinh on November 13, 2009 · 10 comments

Image credit: http://wordprezzie.com

Image credit: http://wordprezzie.com

If you are using WordPress, you must be aware of this security release that has just been introduced this morning from WordPress Developers Team. This release includes two security fixes as followed:

2.8.6 fixes two security problems that can be exploited by registered, logged in users who have posting privileges.  If you have untrusted authors on your blog, upgrading to 2.8.6 is recommended.

The first problem is an XSS vulnerability in Press This discovered by Benjamin Flesch.  The second problem, discovered by Dawid Golunski, is an issue with sanitizing uploaded file names that can be exploited in certain Apache configurations. Thanks to Benjamin and Dawid for finding and reporting these.

I have just upgraded my WordPress to this version as my blog is multi-authors and this is very important as this time, the security fix targets multi-author blogs. I am a lucky man :)


Blogussion Inspired 1.0.2 - Thesis Theme Skin

Related posts:

  1. WordPress Christmas – A Free Wordpress Theme As the Christmas holiday is coming so quickly and I am sure that many...
  2. WordPress 2.8.5 Helps You Fix Trackback Denial of Service Bug WordPress Developers Team called this version a Hardening release as it has fixed a...
  3. Trend Micro Internet Security 2010 FREE for One Year Are you looking for a professional and premium internet security software? If you are...
  4. 2.9 Release Candidate 1 Just to inform a very interesting news regarding the most updated version – WordPress...
  5. FireFox 3.6 Release Candidate 1 for FREE Download It is a good news to hear that Mozilla has just released the first...


{ 1 trackback }

WordPress 2.8.6 Security Release
November 13, 2009 at 12:21 pm

{ 9 comments… read them below or add one }

1 Sahil Kotak November 13, 2009 at 2:15 pm

Updated it before few hours, my blog also have Multi-Authors so i am safe now :baby_soldier: :baby_soldier: :baby_soldier:
Sahil Kotak´s last blog ..12 Plugins For Increasing Comments On Your Blog My ComLuv Profile

Reply

2 Tran Tinh November 14, 2009 at 2:13 pm

Yes, you have done right thing :yeah:

Reply

3 George Serradinho November 14, 2009 at 7:25 am

I upgraded automatically with no issues at all. My blog has a few guest posters so I had to upgrade ASAP.

I actually thought that they would wait a bit longer and bring out version 2.9, but I think the security release is a must as there are many sites who have guest bloggers :)
George Serradinho´s last blog ..WordPress 2.8.6 Release – 2 Security Fixes My ComLuv Profile

Reply

4 Tran Tinh November 14, 2009 at 2:14 pm

I never use Beta but always upgrade to the latest version as the latest version must be an improved one with many security fixes :smoking:

Reply

5 George Serradinho November 14, 2009 at 7:27 am

I see your smilies are very big, might want to take care of the placement as it makes the line look much better. I also want to say that the smilies are way better than the defualt ones WP supplies ;)
George Serradinho´s last blog ..WordPress 2.8.6 Release – 2 Security Fixes My ComLuv Profile

Reply

6 Tran Tinh November 14, 2009 at 2:15 pm

Well, I hate the default smilies and I want to make my comments more emotional, not just typing as usual :toungue:

Reply

7 forex_strategy November 23, 2009 at 12:54 am

I like this site really much.

This is really a extraordinary place.

This is not like other money directed site, the information here is truly valuable.

I am definitely bookmarking it as well as sharin it with my friends.

:)

Reply

8 Tran Tinh November 23, 2009 at 10:29 am

Thanks, you are so welcome

Reply

9 freemovies.online December 6, 2009 at 1:22 am

Very good concept, I like how you convey the message.

Reply

Leave a Comment

CommentLuv Enabled
:$$$: :knife: :thanx: :nooo: :smoking: :crying: :yeah: :cheers: :hands: more »

Previous post:

Next post: