As you can probably tell from the title, this episode features quite a bit of discussion surrounding WordPress 2.7. Not to worry though as there are plenty of other things that Keith and I discuss such as our favorite feature in WordPress 2.7 Beta 1, the WordPress showcase, whether or not Drupal can beat WordPress, and near the end of the show, Anthony Cole called in and gave us the 411 on WordCamp Australia which is taking place on November 29th and November 30th. Ad Copy: WordPress Weekly is brought to you by the fine advertisers on WeblogToolsCollection.com. Without their continued support, this show would not be possible. Those of you who continue to download the show and share it with friends, your continued support is appreciated. If you are interested in advertising on WordPress Weekly, please contact Mark Ghosh via this contact form. Stories Discussed: Your Favorite Feature In […]
[Continue Reading...]
Comment Remix Security Bulletin
Normally, we usually keep a maximum of two posts a day that are published on WeblogTooolsCollection as a means of keeping your dashboard from being overcome by us. However, considering that the following security bulletin has been published concerning the plugin (WP Comment Remix) and it won the WeblogToolsCollection plugin competition, I felt it was important to pass along this security bulletin to you. According to the bulletin that was published by Chxsecurity.org version 1.4.3 contains the following vulnerabilities: SQL Injection: caused by unsanitized variable āpā in the ajax_comments.php file. Cross Site Scripting: This affects authenticated and unauthenticated users. Cross Site Request Forgery: the form generated through wpcr_do_options_page lacks the WordPress wp_nonce security function. These vulnerabilities are considered HIGH risks however, the latest version (1.4.4) apparently addresses these issues. If you are using this plugin on your blog, be sure to upgrade it to the latest version.
[Continue Reading...]