Summary: | wordpress-mu multiple vulnerabilities: CVE-2009-2431, CVE-2009-2432, CVE-2009-2334, CVE-2009-2335, CVE-2009-2336 | ||
---|---|---|---|
Product: | Sisyphus | Reporter: | Vladimir Lettiev <crux> |
Component: | wordpress-mu | Assignee: | Denis Klimov <zver> |
Status: | CLOSED FIXED | QA Contact: | qa-sisyphus |
Severity: | blocker | ||
Priority: | P3 | CC: | msp |
Version: | unstable | Keywords: | security |
Hardware: | all | ||
OS: | Linux |
Description
Vladimir Lettiev
2009-07-13 11:14:59 MSD
Сейчас нет времени и интереса поддерживать этот пакет. выдам acl любому желающему этим заниматься. http://wordpress.org/development/2009/07/wordpress-2-8-2/ WordPress 2.8.2 fixes an XSS vulnerability. Comment author URLs were not fully sanitized when displayed in the admin. This could be exploited to redirect you away from the admin to another site обновлено до 2.8.6 fixed |