WordPress 4.9.1 Security and Maintenance Release WordPress 4.9.1 is now available. This is a security and maintenance release for all versions since WordPress 3.7. We strongly encourage you to update your sites immediately. WordPress versions 4.9 and earlier are affected by four security issues which could potentially be exploited as part of a multi-vector attack. As part of the core team's ongoing commitment to security hardening, the following fixes have been implemented in 4.9.1: Use a properly generated hash for the newbloguser key instead of a determinate substring. Add escaping to the language attributes used on html elements. Ensure the attributes of enclosures are correctly escaped in RSS and Atom feeds. Remove the ability to upload JavaScript files for users who do not have the unfiltered_html capability. Thank you to the reporters of these issues for practicing responsible security disclosure: [ more... ]
The post WordPress 4.9.1 Security and Maintenance Release appeared first on 지락문화예술공작단.
원문출처 : https://jirak.net/wp/wordpress-4-9-1-security-and-maintenance-release/
댓글 0
번호 | 제목 | 글쓴이 | 날짜 | 조회 수 |
---|---|---|---|---|
19 | 웹사이트 보안 개발 가이드 20160421 | 관리자 | 2017.07.25 | 147 |
18 | WordPress 4.8.1 Maintenance Release | 관리자 | 2017.08.03 | 146 |
17 | The Month in WordPress: August 2017 | 관리자 | 2017.09.02 | 164 |
16 | AWS 자격증 시험 신청 하기 | 관리자 | 2017.09.19 | 198 |
15 | WordPress 4.8.2 Security and Maintenance Release | 관리자 | 2017.09.20 | 427 |
14 | WordPress 4.9 Beta 3 | 관리자 | 2017.10.20 | 392 |
13 | WordPress 4.9 Beta 4 | 관리자 | 2017.10.26 | 632 |
12 | WordPress 4.8.3 Security Release | 관리자 | 2017.11.01 | 376 |
11 | WordPress 4.9 Release Candidate 2 | 관리자 | 2017.11.09 | 388 |
10 | error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE in PHP (after update centos-7.4) | 관리자 | 2017.11.15 | 1972 |
9 | WordPress 4.9 “Tipton” | 관리자 | 2017.11.16 | 811 |
» | WordPress 4.9.1 Security and Maintenance Release | 관리자 | 2017.11.30 | 893 |
7 | The Month in WordPress: November 2017 | 관리자 | 2017.12.02 | 389 |
6 | How To Downgrade DigitalOcean Droplets | 관리자 | 2017.12.08 | 424 |
5 | cannot load media library on wordpress (feat. modsecurity & sql injection ruleset) | 관리자 | 2018.02.26 | 924 |