Joe Amenta's Blog

August 11, 2009

WordPress updated to 2.8.4

Filed under: Administrative — AirBreather @ 10:06 pm

WordPress has been updated to 2.8.4, securing it from the vulnerability discovered yesterday that permits the admin password to be reset by passing an empty array as the key parameter to a reset request:

http://www.startcodon.com/wordpress/wp-login.php?action=rp&key[]=.

This will fail now :-)

No Comments »

No comments yet.

RSS feed for comments on this post. TrackBack URL

Leave a comment

Powered by WordPress