In association with heise online

30 October 2007, 18:48

WordPress update

The latest version, 2.3.1, of the popular WordPress blogging software has eliminated a cross-site scripting vulnerability. With the register_globals option activated, JavaScript can be passed to the wp-admin/edit-post-rows.php module and executed in the browser of the user calling the page. More than 20 other bugs have also been fixed.

See also:

(mba)

  • Share this article
  • Twitter
  • Facebook
  • digg this
  • submit to slashdot
  • post to delicious
  • StumbleUpon
  • submit to reddit







The H open source

The H Security

The H Internet Toolkit