Wordpress 2.8.2 Released to Fix XSS Vulnerability

2009/07/20 - By Kurt Avish - 154 views

Wordpress just released a new version of Wordpress 2.8.2 minutes ago. This is quite rare from wordpress to have a quick release within less than 2 weeks of the previous release of 2.8.1.


wordpress, wordpress logo, wordpress 2.8.2

All wordpress users are advised to upgrade immediately. If you are using wordpress 2.8 or 2.8.1 you should do it right now as wordpress 2.8.2 fixed a vulnerability. As wordpress blog said:

WordPress 2.8.2 fixes an XSS vulnerability. Comment author URLs were not fully sanitized when displayed in the admin. This could be exploited to redirect you away from the admin to another site.

There was also report of upgrading issues with wordpress 2.8 since days ago which has been fixed. Note that if you are using wordpress 2.7.1 you do not have to upgrade at all cost. However if you are using wordpress 2.8 or 2.8.1 you SHOULD do it right now.

Blog Widget by LinkWithin

TARAVOYANCE_US

share it
share1
share1
share1
share1

Sign up to Island Crisis free email delivery now! Get all latest updates!

Enter your email address:

Comments From Our Wonderful Readers...

7 Responses to “Wordpress 2.8.2 Released to Fix XSS Vulnerability”

  1. Web Design Bureau of Mauritius on July 20th, 2009 11:38 AM

    I’ve been having some trouble with the newest versions of WP. I’ll surely upgrade but its quite unnerving to have to upgrade all the time.
    Web Design Bureau of Mauritius´s last blog ..Online opinions are trusted. My ComLuv Profile

    [Reply to this comment]

    Kurt Avish Reply:

    The upgrade was done successfully here :) Infact even to move to 2.8 it was fine here. On priscus and another blog i got real trouble however with super cache. Anyway if ur still using 2.7.1 its ok..however if u already moved to 2.8..do move it to the new one.

    [Reply to this comment]

  2. Bruno on July 20th, 2009 12:00 PM

    lol good Im not using wordpress right now … I actually have the following approach with open source material … I use a new version only when it is tested and verified … e.g. I never ddl a Slackware version X.0 but always ddl the X.1 or X.2 release

    Same thing should go with Wordpress, if 2.7.X works, wait until 2.8.X is really stable and dont rush on the 2.8.0 when it;s out … youll always have to upgrade loads of times before it becomes stable

    Sinon since this is island crisis, you could write a post about prostitution of mauritian students abroad: there is yet another article about it here: Le Matinal – Témoignage : prostitution des étudiantes mauriciennes en Angleterre at http://bit.ly/TS8pj

    Samem mo finn toujours dire … it’s mille fois better fer degree a moris, lerla fer enn Masters ou PhD dehors. la vie bien bien difficile ici
    Bruno´s last blog ..I dont know anything My ComLuv Profile

    [Reply to this comment]

    Web Design Bureau of Mauritius Reply:

    @Bruno, Wordpress actually has an automatic upgrade option and a rather ugly banner that distracts you when you’re on the back office which somewhat incites you to quickly upgrade.

    Concerning, the Mauritian students article, there are many things that can be said but I’ll wait for a more detailed article to comment on that (and no way for me to comment on Le Matinal… yuck)!
    Web Design Bureau of Mauritius´s last blog ..Check out your SEO knowledge – Part 1. My ComLuv Profile

    [Reply to this comment]

    Kurt Avish Reply:

    Yes as Sachin said the message provoking for an update is really annoyingly infront our eyes lol. As for the article on le matinal…its nothing new… tired of hearing these cases in the last few years. Maybe a discussion article on its why and solution would be better. I’ll consider that.

    [Reply to this comment]

  3. Karthick on July 20th, 2009 2:20 PM

    Thanks, I just updated to wordpress 2.8.2 and it went very smooth.
    Karthick´s last blog ..Elements Premium WordPress Theme My ComLuv Profile

    [Reply to this comment]

  4. WordPress 2.8.2 Released « Nitin Katkam on July 20th, 2009 8:27 PM

    [...] Ruish, from the Island Crisis website, mentions that if you are still on WordPress 2.7.1, you do not have upgrade yet. The could be, in part, due [...]

Feel free to leave a comment or reply to another commentator below...
and oh, if you want a pic to show with your comment, go get a gravatar!