WordPress 2.3.3

Hey everyone, just a quick post letting you all know WordPress 2.3.3 has been released. According to WordPress.org, there was a flaw in their XML-RPC implementation, “such that a specially crafted request would allow any valid user to edit posts of any other user on that blog.” WordPress 2.3.3 also fixes a few minor bugs, so it looks like it’ll be a good idea to upgrade.

If you are interested only in the security fix, download the fixed version of xmlrpc.php and copy it over your existing xmlrpc.php. Otherwise, you can just download the whole release.

XMLRPC.php – Fixed Version

WordPress 2.3.3 – Full Version

Post Revisions:

Tagged with:

About the author:

One Response to WordPress 2.3.3

  1. I’ve upgraded my WP using the WordPress Automatic Update plugin. Pretty easy!

Leave a Reply

Please note that WPCandy is a moderated community.

 

Required fields are marked *

*

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>