WordPress 2.6.5 is immediately available and fixes one security problem and three bugs. We recommend everyone upgrade to this release.
The security issue is an XSS exploit discovered by Jeremias Reith that fortunately only affects IP-based virtual servers running on Apache 2.x. If you are interested only in the security fix, copy wp-includes/feed.php
and wp-includes/version.php
from the 2.6.5 release package.
2.6.5 contains three other small fixes in addition to the XSS fix. The first prevents accidentally saving post meta information to a revision. The second prevents XML-RPC from fetching incorrect post types. The third adds some user ID sanitization during bulk delete requests. For a list of changed files, consult the full changeset between 2.6.3 and 2.6.5.
Note that we are skipping version 2.6.4 and jumping from 2.6.3 to 2.6.5 to avoid confusion with a fake 2.6.4 release that made the rounds. There is not and never will be a version 2.6.4.
check out the story at WordPress Development
Microsoft's Orca 2 is a groundbreaking AI language model that has made significant strides in…
Artificial Intelligence (AI) has become an integral part of our digital lives and at the…
Well, it has taken along time, but it's official. WordPress.org has released a maintenance release…
The rise of Local SEO has made it easier for businesses to increase brand awareness…
I was asked by a reader: I'm using the THiCK theme for my new design…
The article lists the 13 best WordPress email marketing plugins for 2022 - HubSpot, ConvertKit,…
View Comments
I am the man, I much enjoyed the updated WP!