메뉴 건너뛰기

GREATUSER

tech

ETC WordPress 4.5.2 Security Release

관리자 2016.05.07 14:00 조회 수 : 39

WordPress 4.5.2 Security Release WordPress 4.5.2 is now available. This is a security release for all previous versions and we strongly encourage you to update your sites immediately. WordPress versions 4.5.1 and earlier are affected by a SOME vulnerability through Plupload, the third-party library WordPress uses for uploading files. WordPress versions 4.2 through 4.5.1 are vulnerable to reflected XSS using specially crafted URIs through MediaElement.js, the third-party library used for media players. MediaElement.js and Plupload have also released updates fixing these issues. Both issues were analyzed and reported by Mario Heiderich, Masato Kinugawa, and Filedescriptor from Cure53. Thanks to the team for practicing responsible disclosure, and to the Plupload and MediaElement.js teams for working closely with us to coördinate and fix these issues. Download WordPress 4.5.2 or venture over to Dashboard → Updates and simply click “Update Now.” Sites that [ more... ]

The post WordPress 4.5.2 Security Release appeared first on 지락문화예술공작단.




원문출처 : https://jirak.net/wp/wordpress-4-5-2-security-release/
번호 제목 글쓴이 날짜 조회 수
52 $_SERVER[‘SERVER_SOFTWARE’]=’Apache’ in wp-config.php 관리자 2016.06.24 49
51 웹사이트 보안 개발 가이드 20160421 관리자 2017.07.25 49
50 jsp 에서 사용자가 생성한 java class 호출 하기 관리자 2015.12.31 50
49 Testing the Fastest Way to Import a Table into MySQL (and some interesting 5.7 performance results) 관리자 2015.12.31 51
48 WordPress 4.8.1 Maintenance Release 관리자 2017.08.03 51
47 그누보드 짧은 주소 작성 (nginx) 관리자 2016.02.02 53
46 config static port for nfsd on centos6 관리자 2016.05.21 56
45 pulseaudio [alsa-sink-VT1708S Analog] alsa-sink.c: Error opening PCM device front:0: 부적절한 인수 관리자 2016.12.21 58
44 [MySQL] ERROR 1457 (HY000): Failed to load routine after upgrade or migratrion 관리자 2015.12.31 61
43 The Month in WordPress: August 2017 관리자 2017.09.02 62
42 mysqlbinlog: unknown variable ‘default-character-set=utf8’ 관리자 2016.07.09 64
41 cannot resolve symbol R on android studio 관리자 2016.02.17 65
40 Warning: mysql_connect(): Client does not support authentication protocol requested by server; consider upgrading MariaDB client in /home1/htdocs/apartzm/affisacc/php/acc_tongys.inc.php on line 188ERROR 1251: Client does not smysql_connect(): Client 관리자 2016.07.26 66
39 리눅스 서버의 TCP 네트워크 성능을 결정짓는 커널 파라미터 이야기 – 2편 관리자 2016.08.12 69
38 [AWS] certificate arn:aws:iam server-certificate not found when configure ELB 관리자 2017.06.06 69
위로