WordPress 3.4.1 Maintenance & Security Update

WordPress 3.4.1 Maintenance & Security Update

28 Jun 2012 ·

Uncategorized


WordPress

Just two weeks after WordPress 3.4 was released, the dev team has released the first update – WordPress 3.4.1 which is a maintenance and security update so all users are strongly recommended to upgrade ASAP.

WordPress 3.4.1 addresses 18 bugs in version 3.4 like:

  • Fixes an issue where a theme’s page templates were sometimes not detected.
  • Addresses problems with some category permalink structures.
  • Better handling for plugins or themes loading JavaScript incorrectly.
  • Adds early support for uploading images on iOS 6 devices.
  • Allows for a technique commonly used by plugins to detect a network-wide activation.
  • Better compatibility with servers running certain versions of PHP (5.2.4, 5.4) or with uncommon setups (safe mode, open_basedir), which had caused warnings or in some cases prevented emails from being sent.

Aside from the bugs mentioned above, this version also fixes some security issues and contains some security hardening like:

  • Privilege Escalation/XSS. Critical. Administrators and editors in multisite were accidentally allowed to use unfiltered_html for 3.4.0.
  • CSRF. Additional CSRF protection in the customizer.
  • Information Disclosure: Disclosure of post contents to authors and contributors (such as private or draft posts).
  • Hardening: Deprecate wp_explain_nonce(), which could reveal unnecessary information.
  • Hardening: Require a child theme to be activated with its intended parent only.

Download WordPress 3.4.1 from WordPress.org and update manually or you can do it automatically via the WordPress admin panel – Dashboard > Updates. Be sure to backup your WordPress database and deactivate all active plugins before performing the upgrade to avoid any issues or conflicts.

I’ve just upgraded this blog to WordPress 3.4.1 and the upgrade process went smoothly. I also didn’t experience any problems or conflicts with any of my existing plugins.

Anyone else upgraded their installation to WordPress 3.4.1?


Subscribe to JaypeeOnline's RSS feed  Share this on del.icio.us  Stumble It!  Digg this!  Share this on Facebook  Tweet this!  Share on FriendFeed  Bookmark It!  Submit to Reddit!  Email this story to a friend!
Written by Jaypee Habaradas
Owner and editor of JaypeeOnline. Self-proclaimed geek. New media writer and consultant. WordPress advocate. Loves blogging, gadgets, video games and sports. You can follow him on Twitter @jaypee or Facebook.
Don't miss a single post and receive FREE updates on your email inbox. Subscribe NOW!

Enter your email address:

*Don't forget to verify your subscription by clicking the link on the email that Feedburner will send you.*

Didn't find what you're looking for? Try looking for it again.

Related Posts

Related Ads

























, , , , ,

**Comments posted on JaypeeOnline are moderated. I reserve the right to edit/delete comments that contain words or phrases that are defamatory, abusive, incite hatred and advertise an email address, commercial services or spammy.


Don't Be Shy. Share your thoughts!

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

You May Also Like -

WordPress 3.4.1 Maintenance & Security UpdateWordPress 3.4.1 Maintenance & Security UpdateJust two weeks after WordPress 3.4 was released, the dev team has released the ...