Archive for November, 2009

25th November 2009

Away From 7th December 2009 To 27th December 2009

Posted by Lester Chan at 15:54 in Site

I will be away from the 7th December 2009 to 27th December 2009 to Taiwan and Hong Kong for holidays.

During this period, http://forums.lesterchan.net will be in a read-only mode, meaning you can only search and read topics/replies. Registration of new account, replying to an existing topic and posting a new topic will be DISABLED.

Please make an effort to search or read through the respective forum for your answers. I am 90% sure that your problems had been addressed before.

I WILL NOT entertain any support questions that are sent to me via email during this period. If you urgently need support, you can try posting it in WordPress.org Support Forums.

Tags:

Email This Post Email This Post Print This Post Print This Post

1 Star2 Stars3 Stars4 Stars5 Stars (447 votes, average: 3.96 out of 5)
13th November 2009

WordPress 2.8.6

Posted by Lester Chan at 03:31 in WordPress

WordPress 2.8.6 has been released. This is a security release.

2.8.6 fixes two security problems that can be exploited by registered, logged in users who have posting privileges. If you have untrusted authors on your blog, upgrading to 2.8.6 is recommended.

The first problem is an XSS vulnerability in Press This discovered by Benjamin Flesch. The second problem, discovered by Dawid Golunski, is an issue with sanitizing uploaded file names that can be exploited in certain Apache configurations. Thanks to Benjamin and Dawid for finding and reporting these.

Changelog: WordPress 2.8.6
Download: WordPress 2.8.6
Download: Modified files since WordPress 2.8.5

Email This Post Email This Post Print This Post Print This Post

1 Star2 Stars3 Stars4 Stars5 Stars (139 votes, average: 3.91 out of 5)