In case you haven’t seen the notice in your Dashboard, WordPress has released some new security updates. Also on the development blog is an update on the security of the WordPress.org code, so that we don’t get a repeat of the modified downloads that 2.1.1 had.
From the dev blog:
These releases include fixes for several publicly known minor XSS issues, one major XML-RPC issue, and a proactive full sweep of the WordPress codebase to protect against future problems. Many thanks to Sumit Siddharth and Alex Concha for their help with reporting issues in this release.
As an update to the systems issue we had last month, we have taken dozens of additional precautions with the servers and systems that run WordPress.org and they appear to be working well, despite hundreds of hack attempts after we publicly disclosed there had been a problem. We are also now aggressively monitoring all downloads for any changes or modifications, and we are confident the same type of problem won’t happen again.
Good on them for making things more secure, but now I have to go and update more than twenty WordPress blogs.
Do you like this article? Submit it to Blogosphere News!
6 Responses
WordPress 2.1.3 and 2.0.10 released | BloodhoundBlog: National real estate marketing and technology weblog | There's always something to howl about...
April 3rd, 2007 at 12:24 pm
1[...] Blogging Pro. Security fixes. A good time to run through your plug-ins to make sure everything is 2.1.x-compatible — and thus, possibly, a good time to leave 2.0.x behind. [...]
cerealz
April 3rd, 2007 at 10:29 pm
2Hi.
Does the recent entries and recent comments plug-in still work with wordpress 2.1.3?
David Peralty
April 4th, 2007 at 7:22 am
3cerealz - It is supposed to be a security update, so it shouldn’t break plug-ins…but we will see…
cerealz
April 4th, 2007 at 11:04 pm
4forgive my ignorance… but my plugin’s don’t work anymore.
Btw, i’, using the widget ready version of yr template. Does that matter? thx!
David Peralty
April 5th, 2007 at 9:15 am
5cerealz - Which plugins aren’t working? I look forward to seeing what problems people have with this new version and if it created issues such as what you are talking about.
rika
April 27th, 2007 at 8:29 pm
6hi.. i have the same problem with cereal. Several [widget] plugin are not working, for example: i’m online, useronline, sexy comments. I also have problems with people trying to leave their comment.
I can’t edit k2 template or change the widget options either.
Now, my blog is broken, i dont know why. :((
RSS feed for comments on this post · TrackBack URI
Leave a reply