IMJUSTCREATIVE aka Graham Smith

Seaford Based Freelance Designer & Blogger / Over 20 Years Commercial Experience in Design, Marketing & Print / Evolving Ideas to Print and Digital Media
ImJustCreative / Graham Smith / Seaford Based Freelance Designer header image 1

WordPress 2.3.3 is an urgent security release update

I got wind of this direct from a Blog Update from WPThemesPlugin before any official notification, that I should be signed up for. Nice work WPTP.

Personally, I still have not made the update to 2.3.2, I am still at 2.3.1. So based on this, I am not sure if this security fix is just applicable to 2.3.2 or all prior versions. I assume it’s just related to the 2.3.2 release before Christmas.

So at this point I am unsure if it’s worth installing this update right now or what. Will give it a few days and see what happens on the grapevine.

The following Article is word for word from the official Wordpress Blog post made this morning:

WordPress 2.3.3 is an urgent security release. A flaw was found in our XML-RPC implementation such that a specially crafted request would allow any valid user to edit posts of any other user on that blog. In addition to fixing this security flaw, 2.3.3 fixes a few minor bugs. If you are interested only in the security fix, download the fixed version of xmlrpc.php and copy it over your existing xmlrpc.php. Otherwise, you can get the entire release here.

Also, there is a vulnerability in the WP-Forum plugin that is being actively exploited right now. If you are using this plugin, please remove it until an update is available.

Since we are talking security, remember to use strong passwords and change them regularly. While you’re updating WP and your plugins, consider refreshing your passwords.



0 comments ↓

There are no comments yet...Kick things off by filling out the form below.

Leave a Comment

Profilactic Lifestream Subscriber Logo All my Feeds in one place @ Profilactic. Profilactic is one Uber collection of lifestream' feeds. Subscribe or follow 'most' of my relevant Feeds, including: Del.ici.ous, Twitter, Tumblr, FaceBook, Pownce, Flickr to name but a few. All my Lifestream and Blog Feeds in one place also at FriendFeed.

FREE Chicklets & Badges

jaiku linkxhtml w3c validate logo xhtml w3c validate logo

powered by Twitter logo Fuzz Chicklet logo designer by Graham Smith, freelance Graphic Designer based in Seaford, East Sussex Wordpress logo

Twitter about...

  • Working on some new CrowdSpring projects, damn the compettion is hot 1 week ago
  • URL for CrowdSpring here, cut off the other one. http://snurl.com/2udfh 1 week ago
  • Have some logos over at CrowdSpring that could do with some voting if you like them, a mosquito company (ImJustCreative) http://snurl.co ... 1 week ago
  • Been using LinoType's FontExplorer for my Mac's font management. It's very good, and its free! Been using for several weeks now. No issu ... 1 week ago
  • Some more success's on CrowdSpring, so confidence is growing. Can be a very tough place to work on, but can be rewarding. Very up and down. 1 week ago
  • Thanks all so much for voting on CrowdSpring. Up against the best on that one, so not at all hopeful, but all good practice with Illustr ... 3 weeks ago
  • More updates...

Posting tweet...

All content © ImJustCreative / Graham Smith / Seaford Based Freelance Designer | Visualization is a Wordpress magazine theme by Thad Allender. Theme modified by ImJustCreative 2008.

ImJustCreativeȘ is run by Graham Smith. A Seaford (East Sussex) Based Freelance Graphic & Web Designer who aims to Evolve Ideas to Print and Digital Media