Bloggers who rely on WordPress would be well advised to take a break from seasonal festivities in order to plug a serious security flaw in the software.
WordPress 3.0.4 tackles a serious vulnerability which, left unfixed, creates a handy mechanism for malicious hackers to break into installations of the widely used blogging software. Specifically the vulnerability stems from flaws in the HTML sanitation library used by WordPress.
In the past vulnerable installations of WordPress have facilitated the spread or worms. The flaw might also lend itself towards site compromise or blog spam.
Read more from The Register
Get more information by using Google search
Pingback: WordPress update tackles critical logging ug | Kana Solution | Blog about Blogs
[…] tackles critical logging ug | Ricardo Bueno wrote an interesting post today. Here’s a quick excerpt WordPress 3.0.4 tackles a serious […]