Away From 7th December 2009 To 27th December 2009

I will be away from the 7th December 2009 to 27th December 2009 to Taiwan and Hong Kong for holidays.

During this period, will be in a read-only mode, meaning you can only search and read topics/replies. Registration of new account, replying to an existing topic and posting a new topic will be DISABLED.

Please make an effort to search or read through the respective forum for your answers. I am 90% sure that your problems had been addressed before.

I WILL NOT entertain any support questions that are sent to me via email during this period. If you urgently need support, you can try posting it in Support Forums.

1 Star2 Stars3 Stars4 Stars5 Stars (474 votes, average: 3.95 out of 5)

WordPress 2.8.6

WordPress 2.8.6 has been released. This is a security release.

2.8.6 fixes two security problems that can be exploited by registered, logged in users who have posting privileges. If you have untrusted authors on your blog, upgrading to 2.8.6 is recommended.

The first problem is an XSS vulnerability in Press This discovered by Benjamin Flesch. The second problem, discovered by Dawid Golunski, is an issue with sanitizing uploaded file names that can be exploited in certain Apache configurations. Thanks to Benjamin and Dawid for finding and reporting these.

Changelog: WordPress 2.8.6
Download: WordPress 2.8.6
Download: Modified files since WordPress 2.8.5

1 Star2 Stars3 Stars4 Stars5 Stars (163 votes, average: 3.92 out of 5)