Search This Blog
Popular Posts
-
Elegant Themes has been developing WordPress themes for a long time. It has developed lots of popular themes including Divi, Nexus, Fa...
-
Terri Seymour Terri Seymour has almost 20 years of internet marketing experience and has helped many people start their own business. ...
-
Engagement, engagement, engagement. My brother Lee and I are web developers and entrepreneurs. We try to capitalize on every opportunity a...
-
Hello there! My blog post 'Spikes' was published on Sept. 22nd; however, the post before it called 'Flow' was published on...
-
League Table Premium WordPress Plugin makes it able to add in a successful manner customizable, and responsive tables to your Word...
-
Hot Off the Press Two New WordPress.com Bloggers on 'Diving into the Giant Pool of the Blogosphere' May 11, 2016 @...
-
If you're a regular reader of news sites or magazines, you'll notice that they sometimes use something called "callouts"...
-
IANS New Delhi, Aug 15 (IANS) The Press Information Bureau (PIB) on Saturday launched its blog to mark India's 69th Independence Day a...
-
Hi, I am new to wordpress, and still figuring things out. I have been experimenting with different themes, and have been changing settings...
-
WESTERLY — From the time she was a little girl, Melissa Kenyon Mowry had a knack for writing. Her teachers, noticing her talent, encourage...
Blog Archive
- December (18)
- November (29)
- October (27)
- September (29)
- August (31)
- July (30)
- June (29)
- May (29)
- April (30)
- March (31)
- February (28)
- January (31)
- December (31)
- November (30)
- October (31)
- September (30)
- August (43)
- July (42)
- June (33)
- May (43)
- April (36)
- March (37)
- February (31)
- January (4)
- December (1)
- November (1)
- October (24)
- September (24)
- August (25)
- July (28)
- June (18)
- September (1)
Total Pageviews
Blogroll
WordPress issues critical security release to fix vulnerability that couldâve exposed websites to hackers
Ubiquitous blogging service WordPress has issued a critical security release to fix a vulnerability that could've compromised the security of millions of websites.
"WordPress versions 4.2.2 and earlier are affected by a critical cross-site scripting vulnerability, which could allow anonymous users to compromise a site," explained WordPresser Gary Pendergast in a blog post.
Cross-site scripting, or XSS, is a vulnerability in the code of Web applications that opens up the target (i.e. website) to attacks, and it's one of the most common conduits used by hackers.
With these vulnerabilities in the code, hackers are able to embed malicious HTML, Flash, JavaScript, and other code to "fool" the user into executing a script on their computer. This can lead to the collection of user data, including cookies stored on the machine.
The good news is, a WordPress user reported the vulnerability privately, allowing the community to fix the issue without it becoming public knowledge. However, the fix does require users to upgrade to version 4.2.3, which is easy enough to do from within the main WordPress dashboard.
WordPress has also taken this opportunity to introduce a handful of other bug fixes.
WordPress is a free and open source blogging tool and a content management system (CMS) based on PHP and MySQL. It has many features including a plug-in architecture and a template system. WordPress is used by over 16.7% of Alexa Inter... read more »
Powered by VBProfiles
Source: WordPress issues critical security release to fix vulnerability that could've exposed websites to hackers
0 comments:
Post a Comment