<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
><channel><title>JaypeeOnline &#187; WordPress security release</title> <atom:link href="http://jaypeeonline.net/tag/wordpress-security-release/feed/" rel="self" type="application/rss+xml" /><link>http://jaypeeonline.net</link> <description>Technology, Blogging News, WordPress Theme and Plugin Reviews, Tips and Tricks</description> <lastBuildDate>Mon, 21 May 2012 03:17:06 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=</generator> <item><title>WordPress 3.1.2 Security Update</title><link>http://jaypeeonline.net/wordpress/wordpress-3-1-2-security-update/</link> <comments>http://jaypeeonline.net/wordpress/wordpress-3-1-2-security-update/#comments</comments> <pubDate>Wed, 27 Apr 2011 04:11:25 +0000</pubDate> <dc:creator>Jaypee Habaradas</dc:creator> <category><![CDATA[WordPress]]></category> <category><![CDATA[contributor level user]]></category> <category><![CDATA[wordpress 3.1.2]]></category> <category><![CDATA[WordPress security release]]></category> <category><![CDATA[wordpress security update]]></category> <category><![CDATA[wordpress update]]></category> <category><![CDATA[wordpress upgrade]]></category><guid
isPermaLink="false">http://jaypeeonline.net/?p=9440</guid> <description><![CDATA[Heads up to all WordPress users! A new security update &#8211; WordPress 3.1.2 was just released a few hours ago. This security release addresses a vulnerability allowing Contributor-level users to improperly publish posts so everyone is strongly advised to update to this latest version especially if user registration is enabled on your WordPress-powered blog or [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://maxcdn.jaypeeonline.net/images/wplogo2.png" alt="WordPress" /></p><p>Heads up to all <a
href="http://jaypeeonline.net/category/wordpress/">WordPress</a> users! A new security update &#8211; <a
href="http://wordpress.org/news/2011/04/wordpress-3-1-2/">WordPress 3.1.2</a> was just released a few hours ago. This security release addresses a vulnerability allowing Contributor-level users to improperly publish posts so everyone is strongly advised to update to this latest version especially <strong>if user registration is enabled</strong> on your WordPress-powered blog or website.</p><p>Aside from that, version 3.1.2 also fixes a few other bugs that didn&#8217;t make it in the previous <a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-1-now-available/">version 3.1.1</a>. Thanks to <strong>Andrew Nacin</strong> and <strong>Benjamin Balter</strong> for discovering about the security issue and informing the WordPress team about it.</p><p>You can <a
href="http://wordpress.org/download/">download WordPress 3.1.2</a> and do the upgrade manually or you can choose to do it the easy way via the WordPress admin panel – <strong>Dashboard > Updates</strong>. Be sure to backup your WordPress database and deactivate all active plugins before performing the upgrade.</p><p>Just upgraded JaypeeOnline to <strong>WordPress 3.1.2 </strong> (manually) a few minutes ago and the upgrade process went smoothly, no issues with the current plugins I&#8217;m using.</p><div
id="crp_related"><ul><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-4-and-3-2-rc-3/" rel="bookmark" class="crp_title">WordPress 3.1.4 and 3.2 Release Candidate 3 Now Available</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-3-security-update-wordpress-3-2-beta-2-released/" rel="bookmark" class="crp_title">WordPress 3.1.3 Security Update &#038; WordPress 3.2 Beta 2 Released</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-3-security-release/" rel="bookmark" class="crp_title">WordPress 3.0.3 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-2-security-release/" rel="bookmark" class="crp_title">WordPress 3.0.2 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-1-now-available/" rel="bookmark" class="crp_title">WordPress 3.1.1 Now Available</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-3-2-wordpress-3-4-beta-3-released/" rel="bookmark" class="crp_title">WordPress 3.3.2 &#038; WordPress 3.4 Beta 3 Released</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-5-hotfix/" rel="bookmark" class="crp_title">WordPress 3.0.5 Security Release Hotfix</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-4-security-update/" rel="bookmark" class="crp_title">WordPress 3.0.4 Security Update</a></li><li><a
href="http://jaypeeonline.net/wordpress/test/" rel="bookmark" class="crp_title">WordPress Update</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-2-8-4-security-release/" rel="bookmark" class="crp_title">WordPress 2.8.4 Security Release</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://jaypeeonline.net/wordpress/wordpress-3-1-2-security-update/feed/</wfw:commentRss> <slash:comments>2</slash:comments> </item> <item><title>WordPress 3.1.1 Now Available</title><link>http://jaypeeonline.net/wordpress/wordpress-3-1-1-now-available/</link> <comments>http://jaypeeonline.net/wordpress/wordpress-3-1-1-now-available/#comments</comments> <pubDate>Wed, 06 Apr 2011 02:13:14 +0000</pubDate> <dc:creator>Jaypee Habaradas</dc:creator> <category><![CDATA[WordPress]]></category> <category><![CDATA[CSRF prevention]]></category> <category><![CDATA[IIS6 support]]></category> <category><![CDATA[PATHINFO]]></category> <category><![CDATA[wordpress 3.1]]></category> <category><![CDATA[wordpress 3.1.1]]></category> <category><![CDATA[wordpress release]]></category> <category><![CDATA[WordPress security release]]></category> <category><![CDATA[xss flaw]]></category><guid
isPermaLink="false">http://jaypeeonline.net/?p=9414</guid> <description><![CDATA[A few hours ago, Ryan Boren announced via the official WordPress blog the availability of WordPress 3.1.1. This update is a maintenance and security release that contains about thirty patches/fixes to issues found on the 3.1 version like security hardening to media uploads, performance improvements, fixes for IIS6 support, fixes for taxonomy and PATHINFO (/index.php/) [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://maxcdn.jaypeeonline.net/images/wplogo.png" alt="WordPress" /></p><p>A few hours ago, Ryan Boren announced via the official WordPress blog the availability of <a
href="http://wordpress.org/news/2011/04/wordpress-3-1-1/">WordPress 3.1.1</a>. This update is a <strong>maintenance and security release</strong> that contains about thirty patches/fixes to issues found on the <a
href="http://jaypeeonline.net/wordpress/wordpress-3-1/">3.1 version</a> like security hardening to media uploads, performance improvements, fixes for <strong>IIS6 support</strong>, fixes for <strong>taxonomy</strong> and <strong>PATHINFO</strong> (/index.php/) permalinks and fixes for various query and <strong>taxonomy edge cases</strong> causing plugin compatibility issues.</p><p>Aside from the issues mentioned above, <strong>WordPress 3.1.1</strong> also addresses three security issues that were discovered by <strong>Jon Cave</strong> and <strong>Peter Westwood</strong> &#8211; both WordPress core developers and members of the WordPress security team.</p><ul><li>Hardens CSRF prevention in the media uploader.</li><li>Avoids a PHP crash in certain environments when handling devilishly devised links in comments.</li><li>Addresses a XSS flaw.</li></ul><p>Whether you&#8217;ve already upgraded to <strong>WordPress 3.1</strong> or not, this is the best time to upgrade your WordPress installation to the latest version.</p><p><strong>WordPress 3.1.1</strong> can be <a
href="http://wordpress.org/download/">downloaded manually from WordPress.org</a> or automatically via the WordPress admin panel – <strong>Dashboard > Updates</strong>. Personally, I prefer to do the upgrade manually because it has less problems and issues. Make sure that you disable/deactivate all active plugins before you start the upgrade process. This reduces the risk of running into problems or plugin compatibility issues.</p><p>Anyone upgraded their blogs to <strong>WordPress 3.1.1</strong>? What version of WordPress were you running prior to the upgrade? Please share your thoughts.</p><div
id="crp_related"><ul><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-2-security-update/" rel="bookmark" class="crp_title">WordPress 3.1.2 Security Update</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-3-2-wordpress-3-4-beta-3-released/" rel="bookmark" class="crp_title">WordPress 3.3.2 &#038; WordPress 3.4 Beta 3 Released</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-4-and-3-2-rc-3/" rel="bookmark" class="crp_title">WordPress 3.1.4 and 3.2 Release Candidate 3 Now Available</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-3-security-update-wordpress-3-2-beta-2-released/" rel="bookmark" class="crp_title">WordPress 3.1.3 Security Update &#038; WordPress 3.2 Beta 2 Released</a></li><li><a
href="http://jaypeeonline.net/wordpress/upgraded-to-wordpress-221/" rel="bookmark" class="crp_title">Upgraded To WordPress 2.2.1</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-4-security-update/" rel="bookmark" class="crp_title">WordPress 3.0.4 Security Update</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-5-hotfix/" rel="bookmark" class="crp_title">WordPress 3.0.5 Security Release Hotfix</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-2-security-release/" rel="bookmark" class="crp_title">WordPress 3.0.2 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-3-security-release/" rel="bookmark" class="crp_title">WordPress 3.0.3 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-1-released/" rel="bookmark" class="crp_title">WordPress 3.0.1 Released</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://jaypeeonline.net/wordpress/wordpress-3-1-1-now-available/feed/</wfw:commentRss> <slash:comments>4</slash:comments> </item> <item><title>WordPress 3.0.5 Security Release Hotfix</title><link>http://jaypeeonline.net/wordpress/wordpress-3-0-5-hotfix/</link> <comments>http://jaypeeonline.net/wordpress/wordpress-3-0-5-hotfix/#comments</comments> <pubDate>Wed, 09 Feb 2011 17:27:01 +0000</pubDate> <dc:creator>Jaypee Habaradas</dc:creator> <category><![CDATA[WordPress]]></category> <category><![CDATA[advanced html]]></category> <category><![CDATA[Akismet]]></category> <category><![CDATA[akismet 2.5.3]]></category> <category><![CDATA[author level user]]></category> <category><![CDATA[contributor level user]]></category> <category><![CDATA[wordpress 3.0.5]]></category> <category><![CDATA[wordpress 3.0.5 bug]]></category> <category><![CDATA[WordPress security release]]></category> <category><![CDATA[wordpress security update]]></category><guid
isPermaLink="false">http://jaypeeonline.net/?p=9330</guid> <description><![CDATA[Two days ago, the WordPress dev team released WordPress 3.0.5 which is a security hardening update that includes security enhancements like improved security of any plugins that didn&#8217;t properly leverage security API, additional in-depth defense against vulnerabilities, fix for a information disclosure issue that could&#8217;ve allowed author-level users to view content of drafts &#038; private [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://maxcdn.jaypeeonline.net/images/wplogo.png" alt="WordPress" /></p><p>Two days ago, the <a
href="http://jaypeeonline.net/category/wordpress/">WordPress</a> dev team released <a
href="http://wordpress.org/news/2011/02/wordpress-3-0-5/">WordPress 3.0.5</a> which is a security hardening update that includes security enhancements like improved security of any plugins that didn&#8217;t properly leverage <strong>security API</strong>, additional in-depth defense against vulnerabilities, fix for a information disclosure issue that could&#8217;ve allowed <strong>author-level users</strong> to view content of drafts &#038; private posts and a bug fix for an issue that could&#8217;ve allowed contributor or author-level users to gain further access to the website/blog.</p><p><strong>WordPress 3.0.5</strong> did its job of fixing the security issues and bugs but it also created a small glitch that stripped <strong>advanced HTML</strong> from comments. Here&#8217;s Mark Jaquith&#8217;s explanation about the <strong>WordPress 3.0.5 bug</strong>.</p><blockquote><p>One of the security fixes for WordPress 3.0.5 was overzealous. It fixed the issue, but it also stripped advanced HTML (on display, not save, thankfully) from comments by people with the unfiltered_html capability. It’s sort of a rare bug — doesn’t apply to multisite installs, and not many people know that Editors and Administrators on single WP installs can use images etc in comments, so we don’t think it warrants another release.</p></blockquote><p>To address/fix this issue, the Akismet team included the hotfix with the release of <a
href="http://blog.akismet.com/2011/02/08/akismet-plugin-version-2-5-3-for-wordpress/">Akismet 2.5.3</a>. If you&#8217;re not using Akismet, you can use the newly created plugin called <a
href="http://wordpress.org/extend/plugins/hotfix/">Hotfix</a> that fixes the <strong>WordPress 3.0.5 bug</strong>. You might want to keep this plugin for future use as it is designed to fix selected bugs that might come with future versions of WordPress.</p><p>Still haven&#8217;t upgraded to WordPress 3.0.5? Common now! It only takes a few minutes of your time and it will save you a ton of headaches and problems. Better safe than sorry folks!</p><p>You can <a
href="http://wordpress.org/download/">download WordPress 3.0.5</a> manually from WordPress.org or do it automatically via the WordPress admin panel – <strong>Dashboard > Updates</strong>. If you do upgrade your WordPress installation, don&#8217;t forget to download the latest version of <strong>Akismet</strong> or the <strong>Hotfix</strong> plugin so you won&#8217;t get bitten by the <strong>WordPress 3.0.5 bug</strong>.</p><p>Anybody here who&#8217;s already upgraded to <strong>WordPress 3.0.5</strong>? Anyone had issues with the WordPress 3.0.5 bug?</p><div
id="crp_related"><ul><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-2-security-release/" rel="bookmark" class="crp_title">WordPress 3.0.2 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-2-security-update/" rel="bookmark" class="crp_title">WordPress 3.1.2 Security Update</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-4-and-3-2-rc-3/" rel="bookmark" class="crp_title">WordPress 3.1.4 and 3.2 Release Candidate 3 Now Available</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-1-now-available/" rel="bookmark" class="crp_title">WordPress 3.1.1 Now Available</a></li><li><a
href="http://jaypeeonline.net/wordpress-plugins/akismet-2-5-6/" rel="bookmark" class="crp_title">Updated to Akismet 2.5.6</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-4-security-update/" rel="bookmark" class="crp_title">WordPress 3.0.4 Security Update</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-3-security-release/" rel="bookmark" class="crp_title">WordPress 3.0.3 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-2-8-3-security-release/" rel="bookmark" class="crp_title">WordPress 2.8.3 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-223-security-release/" rel="bookmark" class="crp_title">WordPress 2.2.3 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-3-security-update-wordpress-3-2-beta-2-released/" rel="bookmark" class="crp_title">WordPress 3.1.3 Security Update &#038; WordPress 3.2 Beta 2 Released</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://jaypeeonline.net/wordpress/wordpress-3-0-5-hotfix/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>WordPress 3.0.4 Security Update</title><link>http://jaypeeonline.net/wordpress/wordpress-3-0-4-security-update/</link> <comments>http://jaypeeonline.net/wordpress/wordpress-3-0-4-security-update/#comments</comments> <pubDate>Thu, 30 Dec 2010 19:00:44 +0000</pubDate> <dc:creator>Jaypee Habaradas</dc:creator> <category><![CDATA[WordPress]]></category> <category><![CDATA[KSES]]></category> <category><![CDATA[security update]]></category> <category><![CDATA[wordpress 3.0.4]]></category> <category><![CDATA[wordpress 3.0.4 security update]]></category> <category><![CDATA[WordPress security release]]></category> <category><![CDATA[wordpress update]]></category> <category><![CDATA[wordpress upgrade]]></category><guid
isPermaLink="false">http://jaypeeonline.net/?p=9288</guid> <description><![CDATA[The WordPress dev team has released the WordPress 3.0.4 security update to fix a core security bug in the HTML sanitation library. This particular version or release is classified as &#8220;critical&#8221; so all self-hosted WordPress users are advised to update/upgrade their WordPress installation ASAP! Here&#8217;s an excerpt of the official announcement from the WordPress blog: [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://maxcdn.jaypeeonline.net/images/wplogo.png" alt="WordPress" /></p><p>The <a
href="http://jaypeeonline.net/category/wordpress/">WordPress</a> dev team has released the <a
href="http://wordpress.org/news/2010/12/3-0-4-update/">WordPress 3.0.4 security update</a> to fix a core security bug in the <strong>HTML sanitation library</strong>. This particular version or release is classified as &#8220;<strong>critical</strong>&#8221; so all self-hosted WordPress users are advised to update/upgrade their WordPress installation ASAP!</p><p>Here&#8217;s an excerpt of the official announcement from the WordPress blog:</p><blockquote><p>Version 3.0.4 of WordPress, available immediately through the update page in your dashboard or for download here, is a very important update to apply to your sites as soon as possible because it fixes a core security bug in our HTML sanitation library, called KSES. I would rate this release as “critical.”</p></blockquote><p>Special thanks and mention goes to <strong>Mauro Gentile</strong> and <strong>Jon Cave</strong>, the people who discovered and alerted the WordPress team about the vulnerabilities. Aside from the large number of available <strong>free themes</strong> and <strong>plugins</strong>, another thing that makes <strong>WordPress</strong> awesome is the involvement and support of its community.</p><p>Something related to WordPress 3.0.4, I came across <a
href="http://lorelle.wordpress.com/2010/12/29/update-wordpress-now-wordpress-3-0-4/">Lorelle&#8217;s post</a> and it mentions about <a
href="http://www.dreamhoststatus.com/2010/12/29/wordpress-hack-cropping-up-on-some-customer-sites/">Dreamhost users</a> who haven&#8217;t upgraded to version 3.0.4 had issues logging into their dashboards and found out that some codes have been inserted into a large number of WordPress files.</p><p>If you haven&#8217;t upgraded your WordPress installation to <strong>WordPress 3.0.4</strong>, please spare a few minutes of your time to do so. Better safe than sorry folks!</p><p>You can download <a
href="http://wordpress.org/download/">WordPress 3.0.4</a> manually from WordPress.org or do it automatically via the WordPress admin panel – <strong>Dashboard > Updates</strong>.</p><div
id="crp_related"><ul><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-2-security-release/" rel="bookmark" class="crp_title">WordPress 3.0.2 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-3-security-release/" rel="bookmark" class="crp_title">WordPress 3.0.3 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-2-security-update/" rel="bookmark" class="crp_title">WordPress 3.1.2 Security Update</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-1-now-available/" rel="bookmark" class="crp_title">WordPress 3.1.1 Now Available</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-5-hotfix/" rel="bookmark" class="crp_title">WordPress 3.0.5 Security Release Hotfix</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-4-and-3-2-rc-3/" rel="bookmark" class="crp_title">WordPress 3.1.4 and 3.2 Release Candidate 3 Now Available</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-3-2-wordpress-3-4-beta-3-released/" rel="bookmark" class="crp_title">WordPress 3.3.2 &#038; WordPress 3.4 Beta 3 Released</a></li><li><a
href="http://jaypeeonline.net/wordpress/test/" rel="bookmark" class="crp_title">WordPress Update</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-2-8-3-security-release/" rel="bookmark" class="crp_title">WordPress 2.8.3 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-3-security-update-wordpress-3-2-beta-2-released/" rel="bookmark" class="crp_title">WordPress 3.1.3 Security Update &#038; WordPress 3.2 Beta 2 Released</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://jaypeeonline.net/wordpress/wordpress-3-0-4-security-update/feed/</wfw:commentRss> <slash:comments>2</slash:comments> </item> <item><title>WordPress 3.0.3 Security Release</title><link>http://jaypeeonline.net/wordpress/wordpress-3-0-3-security-release/</link> <comments>http://jaypeeonline.net/wordpress/wordpress-3-0-3-security-release/#comments</comments> <pubDate>Thu, 09 Dec 2010 15:52:58 +0000</pubDate> <dc:creator>Jaypee Habaradas</dc:creator> <category><![CDATA[WordPress]]></category> <category><![CDATA[author level user]]></category> <category><![CDATA[bug-fix]]></category> <category><![CDATA[contributor level user]]></category> <category><![CDATA[remote publishing]]></category> <category><![CDATA[wordpress mobile apps]]></category> <category><![CDATA[WordPress security release]]></category> <category><![CDATA[wordpress security update]]></category><guid
isPermaLink="false">http://jaypeeonline.net/?p=9264</guid> <description><![CDATA[Just a week after they released the WordPress 3.0.2 security update, the WordPress dev team has released another security update early this morning &#8211; WordPress 3.0.3. This security update is mandatory for all previous versions of WordPress. WordPress 3.0.3 fixes issues found in the remote publishing interface that in certain situations could allow Author and [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://maxcdn.jaypeeonline.net/images/wplogo.png" alt="WordPress Logo" /></p><p>Just a week after they released the <a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-2-security-release/">WordPress 3.0.2 security update</a>, the WordPress dev team has released another <strong>security update</strong> early this morning &#8211; <strong>WordPress 3.0.3</strong>. This security update is mandatory for all previous versions of WordPress.</p><p><a
href="http://wordpress.org/news/2010/12/wordpress-3-0-3/">WordPress 3.0.3</a> fixes issues found in the <strong>remote publishing interface</strong> that in certain situations could allow <strong>Author</strong> and <strong>Contributor</strong> level users to maliciously or <strong>improperly edit</strong>, <strong>publish</strong> or <strong>delete posts</strong>. <strong>These issues only affect sites that have remote publishing enabled</strong>, so if your blog has remote publishing enabled, it is advised that you upgrade to this security update ASAP. By default, remote publishing is disabled but could be enabled by using remote publishing clients like the <strong>WordPress mobile apps</strong>. If you&#8217;re not sure whether remote publishing is enabled on your blog, you can check it from your WordPress dashboard and going to <strong>Settings > Writing</strong>.</p><p>You can <a
href="http://wordpress.org/download/">download WordPress 3.0.3</a> manually from WordPress.org or do it automatically via the WordPress admin panel – <strong>Dashboard > Updates</strong>.</p><div
id="crp_related"><ul><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-2-security-update/" rel="bookmark" class="crp_title">WordPress 3.1.2 Security Update</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-2-security-release/" rel="bookmark" class="crp_title">WordPress 3.0.2 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-4-security-update/" rel="bookmark" class="crp_title">WordPress 3.0.4 Security Update</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-4-and-3-2-rc-3/" rel="bookmark" class="crp_title">WordPress 3.1.4 and 3.2 Release Candidate 3 Now Available</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-2-8-4-security-release/" rel="bookmark" class="crp_title">WordPress 2.8.4 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-0-5-hotfix/" rel="bookmark" class="crp_title">WordPress 3.0.5 Security Release Hotfix</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-1-now-available/" rel="bookmark" class="crp_title">WordPress 3.1.1 Now Available</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-2-8-6-security-release/" rel="bookmark" class="crp_title">WordPress 2.8.6 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-3-1-3-security-update-wordpress-3-2-beta-2-released/" rel="bookmark" class="crp_title">WordPress 3.1.3 Security Update &#038; WordPress 3.2 Beta 2 Released</a></li><li><a
href="http://jaypeeonline.net/wordpress/test/" rel="bookmark" class="crp_title">WordPress Update</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://jaypeeonline.net/wordpress/wordpress-3-0-3-security-release/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk
Page Caching using disk (enhanced) (User agent is rejected)
Database Caching 8/20 queries in 0.211 seconds using disk
Object Caching 1494/1529 objects using disk
Content Delivery Network via maxcdn.jaypeeonline.net

Served from: jaypeeonline.net @ 2012-05-27 13:07:05 -->
