WordPress Update 2.8.6

Just a quick update here.

This new version of WordPress is not showing on my dashboard yet and probably not even on your site as well. I think this is a record breaker version also for the fastest security update since the previous version (23 days after the 2.8.5 upgrade).

It is always recommended to update to a new version of WordPress as soon as possible and especially so for a security release .

This update  fixes two security problems.

1. XSS vulnerability in Press This.

2. Sanitizing uploaded file names that can be exploited in certain Apache configurations.

Is this version really for you?

Here’s the straight fact: If you have untrusted authors on your blog, upgrading to 2.8.6 is recommended.

Really it’s up to you. This update was really unexpected.

There’s no harm in upgrading, though.

3 Comments »




Leave a Reply

ClickBlog.org Related Posts Widget for Blogs by LinkWithin