WordPress MU 2.8.6 Security and Bugfix Release

WordPress MU 2.8.6 was just released and it is available for download immediately. This releases patches a XSS vulnerability in Press This and another issue with sanitizing upload file names which could be exploited to run a php file uploaded as file.php.jpg in some apache configurations. These are the same security fixes that were patched in WordPress 2.8.6. This release also addresses some MU specific bugs.

Leave a Reply

Your email address will not be published. Required fields are marked *

*

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>