Wordpress stuff

Wordpress 2.3.3

Urgent security update! Update immediately, especially if new users can register on your blog.

WordPress 2.3.3 is an urgent security release. A flaw was found in our XML-RPC implementation such that a specially crafted request would allow any valid user to edit posts of any other user on that blog. In addition to fixing this security flaw, 2.3.3 fixes a few minor bugs. If you are interested only in the security fix, download the fixed version of xmlrpc.php and copy it over your existing xmlrpc.php. Otherwise, you can get the entire release here.

BRB, I have to upgrade five Wordpress installations. :D

Tags: , ,

Related Post

6 Responses to “Wordpress 2.3.3”

  1. BlackNight’s cyberhome » Dragi bloggeri utilizatori de Wordpress :) Says:

    […] Puneţi mâna şi updataţi Wordpress-ul la versiunea 2.3.3 sau măcar dezactivaţi inregistrarea userilor noi, ca s-a găsit înca un bug nasol. Mai multe aici. […]

  2. Kappacelu` Says:

    I have to upgrade 13:)) hope that will not bring me bad luck:p

  3. Cosmin Says:

    13 blogs? :D Why don’t you use Wordpress MU?

  4. Kappacelu` Says:

    1. security bugs
    2. i can’t use it with my current dns server. it doesn’t offer me the option to redirect all subdomains of a certain domain to an ip address:|

  5. Cosmin Says:

    I haven’t watched it too closely, but I haven’t seen security bugs specific for WP MU.

    And you can add DNS records for every subdomain you want to use.

    Anyway, I’m going to give it a try. Five wp installations are IMHO already too many to maintain (yeah, I’m lazy). I don’t want to imagine how much time it takes to maintain all 13 of yours.

  6. Kappacelu` Says:

    the whole upgrade took <2mins. Total Commander (yes,winblowz) rullz!
    And about maintenance, 4 of the owners write <3 posts per month. More are the spam comments:D

Leave a Reply