Wordpress 2.1 release source compromised
Submitted by rernst on Fri, 03/02/2007 - 7:46pm
If you've downloaded the release version of 2.1.1 (e.g. the .zip or .tar.gz version of the files) in the past few days, your software may have a security hole added by a malicious user. You should upgrade to the new release pronto.
As the linked article states, subversion was not compromised, so it's safe to patch your 2.1.1 install to 2.1.2 using the public repository access
Post new comment