WordPress 4.4.2 is currently offered. This is a protection launch for all previous variations as well as we highly urge you to upgrade your websites right away.
WordPress variations 4.4.1 as well as earlier are impacted by 2 protection concerns: a feasible SSRF for sure regional URIs, reported by Ronni Skansing; as well as an open redirection assault, reported by Shailesh Suthar.
Thanks to both press reporters for exercising responsible disclosure.
Download WordPress 4.4.2 or endeavor over to Control panel → Updates as well as merely click “Update Currently.” Websites that sustain automated history updates are currently starting to upgrade to WordPress 4.4.2.
Many thanks to everybody that added to 4.4.2: