WordPress Update 2.8.4
August 11th, 2009 No Comments »Another update to the open source WordPress blogging platform has been released. This update is primarily a security update for a password reset flaw that was introduced with version 2.8.3. It is recommended all WordPress blog admins update their copy of WordPress to 2.8.4 immediately. If you do not use subversion to control your updates, we highly recommend you look into it as it can dramatically speed up and simplify the process of updating your blog(s).
This flaw can compromise WordPress and WordPress MU installations using a simple browser based exploit. More detail on the problem can best be explained by Swa Frantzen at SANS Internet Storm Center:
Wordpress unauthenticated administrator password reset
Author: Christopher


