Categories: Articles

WordPress 2.6.5

WordPress 2.6.5 is immediately available and fixes one security problem and three bugs. We recommend everyone upgrade to this release.

The security issue is an XSS exploit discovered by Jeremias Reith that fortunately only affects IP-based virtual servers running on Apache 2.x. If you are interested only in the security fix, copy wp-includes/feed.php and wp-includes/version.php from the 2.6.5 release package.

2.6.5 contains three other small fixes in addition to the XSS fix. The first prevents accidentally saving post meta information to a revision. The second prevents XML-RPC from fetching incorrect post types. The third adds some user ID sanitization during bulk delete requests. For a list of changed files, consult the full changeset between 2.6.3 and 2.6.5.

Note that we are skipping version 2.6.4 and jumping from 2.6.3 to 2.6.5 to avoid confusion with a fake 2.6.4 release that made the rounds. There is not and never will be a version 2.6.4.

Get WordPress 2.6.5.

check out the story at WordPress Development

Web Master

Hi, I am Miguel, I bought this site in 2009. So I now run or manage the site. Please visit my new website or follow me on twitter @W3i.

View Comments

Recent Posts

3nhanced.com

42 minutes ago

WordCamp Las Vegas: The WordPress codex

I am at the WordCamp convention in Las Vegas and

13 hours ago

6 Best Online Plagiarism Checkers to Detect Duplicated Content

This post discusses the importance of detecting and removing plagiarized content for credibility, originality, avoiding…

1 day ago

Disable caching of your site or post

I talked about Disabling search engine on search pages in a previous post using the…

2 days ago

WordCamp Las Vegas Near

The time is near, only 6 hours and some change to to get your tickets…

2 days ago

Disable search engine on search pages

A good idea when trying to get the most out of your blog is usging…

3 days ago