WordPress 4.5.2 Security Release WordPress 4.5.2 is now available. This is a security release for all previous versions and we strongly encourage you to update your sites immediately. WordPress versions 4.5.1 and earlier are affected by a SOME vulnerability through Plupload, the third-party library WordPress uses for uploading files. WordPress versions 4.2 through 4.5.1 are vulnerable to reflected XSS using specially crafted URIs through MediaElement.js, the third-party library used for media players. MediaElement.js and Plupload have also released updates fixing these issues. Both issues were analyzed and reported by Mario Heiderich, Masato Kinugawa, and Filedescriptor from Cure53. Thanks to the team for practicing responsible disclosure, and to the Plupload and MediaElement.js teams for working closely with us to coördinate and fix these issues. Download WordPress 4.5.2 or venture over to Dashboard → Updates and simply click “Update Now.” Sites that [ more... ]
The post WordPress 4.5.2 Security Release appeared first on 지락문화예술공작단.
원문출처 : https://jirak.net/wp/wordpress-4-5-2-security-release/
댓글 0
번호 | 제목 | 글쓴이 | 날짜 | 조회 수 |
---|---|---|---|---|
22 | MySQL Fetch Cursor 문 사용방법 | 관리자 | 2016.04.06 | 43 |
» | WordPress 4.5.2 Security Release | 관리자 | 2016.05.07 | 42 |
20 | WordPress 4.6 Beta 3 | 관리자 | 2016.07.14 | 41 |
19 | Optimizing NFS Performance | 관리자 | 2016.05.23 | 41 |
18 | 인터넷으로 서비스를 제공하기 위해 챙겨야 할 실용적인 보안 가이드 | 관리자 | 2016.05.24 | 40 |
17 | /etc/sysconfig/iptables 에 포트 리다이렉션 추가해 주기 | 관리자 | 2016.03.25 | 38 |
16 | 그누보드 짧은 주소 작성 (httpd,apache) | 관리자 | 2016.02.03 | 38 |
15 | keepalive + LVS on centos7 | 관리자 | 2016.03.31 | 34 |
14 | install pptpd on linux (centos) | 관리자 | 2016.02.26 | 33 |
13 | 안드로이드 스튜디오 단축키 (공식) | 관리자 | 2016.02.12 | 33 |
12 | Experiment: WordCamp Incubator | 관리자 | 2016.02.19 | 33 |
11 | WordPress 4.5 RC2 | 관리자 | 2016.04.11 | 33 |
10 | Contributor Weekend: Global WordPress Translation Day | 관리자 | 2016.04.08 | 32 |
9 | can’t start httpd(apache-2.4) with ssl module | 관리자 | 2015.12.31 | 31 |
8 | mysql-5.7 Client Error Codes and Messages | 관리자 | 2016.04.06 | 30 |