WordPress 3.9.2 Protection Launch – San Francisco

WordPress 3.9.2 is currently readily available as a safety and security launch for all previous variations. We highly urge you to upgrade your websites right away.

This launch repairs a feasible rejection of solution problem in PHP’s XML handling, reported by Nir Goldshlager of the Salesforce.com Item Protection Group. It was repaired by Michael Adams as well as Andrew Nacin of the WordPress protection group as well as David Rothstein of theDrupal security team This is the very first time our 2 jobs have actually collaborated joint protection launches.

WordPress 3.9.2 additionally has various other protection modifications:

  • Repairs a feasible however not likely code implementation when refining widgets (WordPress is not influenced by default), uncovered by Alex Concha of the WordPress protection group.
  • Avoids info disclosure through XML entity assaults in the exterior GetID3 collection, reported by Ivan Novikov of ONSec.
  • Includes defenses versus brute assaults versus CSRF symbols, reported by David Tomaschik of the Google Protection Group.
  • Consists of some added protection solidifying, like stopping cross-site scripting that can be caused just by managers.

We valued liable disclosure of these concerns straight to our protection group. To find out more, see the release notes or get in touch with the list of changes.

Download WordPress 3.9.2 or endeavor over to Control Panel → Updates as well as merely click “Update Now”.

Websites that sustain automated history updates will certainly be upgraded to WordPress 3.9.2 within 12 hrs. (If you are still on WordPress 3.8.3 or 3.7.3, you will certainly additionally be upgraded to 3.8.4 or 3.7.4. We do not sustain older variations, so please upgrade to 3.9.2 for the current as well as biggest.)

Currently evaluating WordPress 4.0? The 3rd beta is now available (zip) as well as it has these protection repairs.


Cogknockers is a San Francisco WordPress Development Agency with 20+ Years Experience.  WordPress Design is at the core of our services.

Share this post

Share on facebook
Share on twitter
Share on linkedin
Share on pinterest
Share on print
Share on email

Recent News

0

Scroll to Top