Critical wordpress update

Discussion in 'WordPress' started by tom11011, Dec 30, 2010.

  1. #1
    I received this in my email
    http://wordpress.org/news/2010/12/3-0-4-update/

    WordPress News3.0.4 Important Security Update
    Posted December 29, 2010 by Matt Mullenweg. Filed under Releases,Security.
    Version 3.0.4 of WordPress, available immediately through the update page in your dashboard or for download here, is a very important update to apply to your sites as soon as possible because it fixes a core security bug in our HTML sanitation library, called KSES. I would rate this release as “critical.”

    I realize an update during the holidays is no fun, but this one is worth putting down the eggnog for. In the spirit of the holidays, consider helping your friends as well.

    If you are a security researcher, we’d appreciate you taking a look over this changeset as well to review our update. We’ve given it a lot of thought and review but since this is so core we want as many brains on it as possible. Thanks to Mauro Gentile and Jon Cave (duck_) who discovered and alerted us to these XSS vulnerabilities first.
     
    tom11011, Dec 30, 2010 IP
  2. Yuuko008

    Yuuko008 Member

    Messages:
    682
    Likes Received:
    11
    Best Answers:
    0
    Trophy Points:
    33
    #2
    Yup i also received that email. And i'm really planning to update my site. I will just have to complete my new web design so that it will be a one - time - big - time update :)
     
    Yuuko008, Dec 30, 2010 IP
  3. iamasuccess

    iamasuccess Peon

    Messages:
    75
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #3
    Thanks guys. I hadn't seen this yet ! I will get on it right away !
     
    iamasuccess, Dec 30, 2010 IP