Follow on Google News News By Tag Industry News News By Place Country(s) Industry News
Follow on Google News | WordPress 4.3.1 Security And Maintenance UpdateThe core WordPress team officially announced a security and maintenance release WordPress 4.3.1. This update fixes some important security issues, cross-site scripting (XSS) flaws and a potential privilege escalation.
If you own a commercial website which is one out of the total 74,652,825 sites powered by WordPress, then surely this update is highly recommended to you. The added features and fixes of this latest release will surely compel you to upgrade your website with enhanced functionality. This crucial update specifically addresses three issues which include two cross-site scripting vulnerabilities and one potential privilege escalation along with fixing patches for 26 bugs. The intuitive framework of this platform allows web developers to build customized WordPress websites and applications. Here is the List of Changes which you can Expect from This Release Evidently, this security release holds nothing significant other than fixing few vulnerabilities and bugs, which is important too. So, here are the major information regarding the main issues this release addresses: 1. The earlier WordPress versions including 4.3 are vulnerable to the cross-site scripting vulnerability while it processes shortcode tags (CVE-2015-5714) 2. Ben Bidner of the WordPress core security team reported that a separate cross-site scripting vulnerability was found in the user list table. 3. And, in some reports, it was found that users could publish private posts and make them sticky without any official permission (CVE-2015-5715) In addition to the security fixes, the WordPress 4.3.1 release fixes 26 bugs from the 4.3 branch. You can download this latest WordPress update directly from your dashboard and the websites that support automatic background updates have already started to upgrade to WordPress 4.3.1. For WordPress web development, visit - http://www.phpdevelopmentservices.com/ End
Account Email Address Account Phone Number Disclaimer Report Abuse
|
|