Tag Archive | "wordpress 2.7"

WordPress 2.7 “Coltrane”

Friday, December 12, 2008

22 Comments

WordPress 2.7 “Coltrane”

A week after releasing it in WordPress.com and a day after releasing Release Candidate 2, the dev team finally released WordPress 2.7 “Coltrane” to the general public. This version of WordPress is named after American jazz saxophonist and composer, John Coltrane. I know this is a little bit late and I know that some of [...]

Continue reading...

WordPress 2.7 RC 2

Wednesday, December 10, 2008

4 Comments

WordPress 2.7 RC 2

I know that most of you who aren’t using WordPress 2.7 beta versions or RC 1 can’t wait for the final release to announced. Although it’s almost near, the development team feels that it’s not quite ready yet. There comes a time in every WordPress release when it’s ready for the world , to come out [...]

Continue reading...

Weekend Roundup #27

Monday, December 8, 2008

12 Comments

Weekend Roundup #27

This edition of the Weekend Roundup is quite late because I was out most of the time during the weekend. Aside from being caught up with The Dream Match – Pacquiao vs De La Hoya, I was very busy this past weekend with all the activities in church, attending my niece’s birthday party, planning for [...]

Continue reading...

WordPress 2.6.2

Tuesday, September 9, 2008

4 Comments

Yesterday, WordPress 2.6.2 was released to address the SQL Column Truncation and mt_rand() vulnerabilities. This release also includes a few other minor bug fixes. (Details of other bug fixes can be found here)Here's an excerpt from the WordPress blog to give you an idea on how the vulnerabilities can be used to attack blogs with open user registration.With open registration enabled, it is possible in WordPress versions 2.6.1 and earlier to craft a username such that it will allow resetting another user’s password to a randomly generated password. The randomly generated password is not disclosed to the attacker, so this problem by itself is annoying but not a security exploit. However, this attack coupled with a weakness in the random number seeding in mt_rand() could be used to predict the randomly generated password.

Continue reading...