hit counter

Wordpress 2.6.2 Released !!

Wordpress fixes an exploit thats mainly important for blogs with open registration enabled.They say

It is possible in WordPress versions 2.6.1 and earlier to craft a username such that it will allow reswordpressetting another user’s password to a randomly generated password.  The randomly generated password is not disclosed to the attacker, so this problem by itself is annoying but not a security exploit.  However, this attack coupled with a weakness in the random number seeding in mt_rand() could be used to predict the randomly generated password.

2.6.2 also contains a few more bug fixes.

Download Wordpress 2.6.2, You can also upgrade your WP Installation using WAUP, [ Wordpress Automatic Upgrade Plugin ]

Related Posts:

About the Author

Avinash has written 358 stories on this site.

Write a Comment

Gravatars are small images that can show your personality. You can get your gravatar for free today!

Copyright © 2008 TECH YARD. All rights reserved.
Powered by WordPress.org, Custom Theme and ComFi.com Calling Card Company.