August 12, 2009
6:52 am | Last updated: August 12, 2009 at: 6:56 am
WordPress 2.8.4 ‘Highly recommended’ security update
WordPress 2.8.4 fixes all known problems and is highly recommended for all users of WordPress. "a vulnerability was discovered: a specially crafted URL could be requested that would allow an attacker to bypass a security check to verify a user requested a password reset. As a result, the first account without a key in the database (usually the admin account) would have its password reset and a new password would be emailed to the account owner. This doesn’t allow remote access, but it is very annoying" announced. You can download, or do a automatic upgrade.
Loading

Leave a comment »