Search This Blog
Popular Posts
-
Hello there! My blog post 'Spikes' was published on Sept. 22nd; however, the post before it called 'Flow' was published on...
-
WordPress has evolved to be much more than just a blogging platform, from online stores to full-on business platforms, there is ve...
-
Written By ESR News Blog Editor Thomas Ahearn Information security is a top priority for background screening firms in today's dig...
-
The United States government earlier this year officially accused Russia of interfering with the US elections. Earlier this year on Octo...
-
Greetings, readers. Welcome to the HubSpot Marketing Blog. We're very happy to have you here. You might not realize it, but ge...
-
One of my early favorite pictures of Richard Armitage as Guy of Gisborne. [warning: rant] A few years ago, many more fans blogged ...
-
I will publish an article only when I have something important to say. That's what I reminded myself every time the egocentric ...
-
Blogging can be a fun, interesting, entertaining, helpful, and fabulous experience for both bloggers and their readers.But, what blogging ...
-
This entry was posted in Research, WordPress Security on March 1, 2017 by Mark Maunder 43 Replies Today we are posting an in-dep...
-
LIST MAG WP is a beautifully designed WordPress Theme that is built to be engaging, fast and most importantly boost viral traffic with...
Blog Archive
- December (18)
- November (29)
- October (27)
- September (29)
- August (31)
- July (30)
- June (29)
- May (29)
- April (30)
- March (31)
- February (28)
- January (31)
- December (31)
- November (30)
- October (31)
- September (30)
- August (43)
- July (42)
- June (33)
- May (43)
- April (36)
- March (37)
- February (31)
- January (4)
- December (1)
- November (1)
- October (24)
- September (24)
- August (25)
- July (28)
- June (18)
- September (1)
Total Pageviews
Blogroll
Security Haiku: WordPress 4.8.3
WordPress Halloween. We patch the tricks, 4 8 3 You get the treats. Boo!
There is nothing spookier than a WordPress security release, the 4.8.3 patch addresses an SQL injection vulnerability in WordPress core which could be exposed by insecure coding practices found in some plugins. This release hardens the WP Core code to protect the sites who may harbor an insecure SQL query that trusts user input, sanitizing the input before it's passed along to the database server.
More information on this release can be found on the WordPress blog, details on the changes and how it modifies the return value of of esc_sql() have been posted by Gary Pendergast on the Make WordPress Core developers blog.
Thanks goes out to the reporter of the vulnerability (Anthony Ferrara) for working with the WordPress security team. And a special acknowledgement to our own Arman Zakaryan for the Haiku this time around.
Source: Security Haiku: WordPress 4.8.3
0 comments:
Post a Comment