WordPress 2.2.3 Security Release

WordPress 2.2.3 Security Release

9 Sep 2007 ·

WordPress


2.2.3 is a security and bug-fix release for the 2.2 series. Since this is a security release, we suggest you upgrade immediately. Two of the fixes are high priority.

WordPress 2.2.3 was released two days ago. I usually upgrade A.S.A.P but I wasn’t to do it during the weekend because I was busy. It was only now, Sunday night that I had enough time to do the upgrade. So if you were here earlier and couldn’t access the blog, my apologies. I was upgrading my WordPress installation to 2.2.3.

These are the two high priority security bugs that were fixed:

  • Invalid RSS2 Comments Feed
  • Users without unfiltered_html capability can post arbitrary html

These are the other bugs fixed:

  • On Windows machines register_activation_hook() does not work if plugin is in a subfolder of the plugins dir
  • Proposal for a new plugin architecture
  • MAGPIE_USER_AGENT lack of wp version
  • Don’t return GMT date/time in XML-RPC, breaks some clients.
  • WordPress Admin RTL files Bug Fix
  • Fix mt_allow_pings in metaWeblog.newPost (XML-RPC)
  • Corrected indentation in wp-mail.php

If you haven’t upgraded your WordPress installation yet, I advise you to do so. Although WordPress 2.3 will be released in a matter of weeks, don’t delay or take the 2.2.3 upgrade for granted. It’s always better to be safe than sorry.

I love doing WordPress upgrades and this one is no exception. I know some WP users who dread doing upgrades. As long you follow instructions and make sure you have backups of your local WP files and database, you have nothing to worry about. Also, practice makes perfect! The more often you do it, the better you become at it.

If you need any help in installing or upgrading WordPress, just let me know and I’ll do my best to help you.


Subscribe to JaypeeOnline's RSS feed  Share this on del.icio.us  Stumble It!  Digg this!  Share this on Facebook  Tweet this!  Share on FriendFeed  Bookmark It!  Submit to Reddit!  Email this story to a friend!
Written by Jaypee Habaradas
Owner and editor of JaypeeOnline. Self-proclaimed geek. New media writer and consultant. WordPress advocate. Loves blogging, gadgets, video games and sports. You can follow him on Twitter @jaypee or Facebook.
Don't miss a single post and receive FREE updates on your email inbox. Subscribe NOW!

Enter your email address:

*Don't forget to verify your subscription by clicking the link on the email that Feedburner will send you.*

Didn't find what you're looking for? Try looking for it again.

Related Posts

Related Ads

























, ,

**Comments posted on JaypeeOnline are moderated. I reserve the right to edit/delete comments that contain words or phrases that are defamatory, abusive, incite hatred and advertise an email address, commercial services or spammy.


4 Responses to “WordPress 2.2.3 Security Release”

  1. Jaypee UNITED STATES Mozilla Firefox Ubuntu Linux Says:

    @blogOloco – I’m not aware of this issues because I don’t use widgets and the theme I’m using right now isn’t widget-ready. I’ll check it out later on my sandbox.

    Btw, how did you find out? Are you using widgets on your blog?

    Reply

  2. P.I.N.O.Y aka blogOloco UNITED KINGDOM Mozilla Firefox Windows Says:

    I did it straight away as soon as it was published. Only problem is you can’t move the widgets around the sidebar. it doesn’t seem to work on IE7

    Reply

Don't Be Shy. Share your thoughts!

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

Trackbacks/Pingbacks

  1. [...] which is schedule to be released in November unless of course there’s a security release like WordPress 2.2.3, then I’d most certainly do an upgrade. (No Ratings Yet) If you enjoyed the article, why [...]

  2. [...] If you want to know more of the technical stuffs on what has changed, please go see Mr. Jaypee’s post about WordPress 2.2.3 security changes. [...]

You May Also Like -

WordPress 3.0.2 Security ReleaseWordPress 3.0.2 Security ReleaseJust a few minutes ago, the WordPress dev team released WordPress 3.0.2 , a ...