[WordPress 6.0.2 Security and Maintenance Release](https://wordpress.org/news/2022/08/wordpress-6-0-2-security-and-maintenance-release/. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-2dc13cc97f 2022-09-14 00:18:15.239296 --------------------------------------------------------------------------------Name : wordpress Product : Fedora 37 Version : 6.0.2 Release : 1.fc37 URL : https://wordpress.org/ Summary : Blog tool and publishing platform Description : Wordpress is an online publishing / weblog package that makes it very easy, almost trivial, to get information out to people on the web. Important information in /usr/share/doc/wordpress/README.fedora --------------------------------------------------------------------------------Update Information: [WordPress 6.0.2 Security and Maintenance Release](https://wordpress.org/news/2022/08/wordpress-6-0-2-security-and-maintenance-release/ --------------------------------------------------------------------------------ChangeLog: * Thu Sep 8 2022 Remi Collet - 6.0.2-1 - WordPress 6.0.2 Security and Maintenance Release --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-2dc13cc97f' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
**WordPress 5.2.4 Security Release** WordPress versions 5.2.3 and earlier are affected by these bugs, which are fixed in version 5.2.4. **Security Updates** * Props to Evan Ricafort for finding an issue where stored XSS (cross-site scripting) could be added via the Customizer. * Props to J.D. Grimes who found and disclosed a method of viewing unauthenticated posts. * Props to. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-f21ad78845 2019-10-26 17:17:38.272504 --------------------------------------------------------------------------------Name : wordpress Product : Fedora 31 Version : 5.2.4 Release : 1.fc31 URL : https://wordpress.org/ Summary : Blog tool and publishing platform Description : Wordpress is an online publishing / weblog package that makes it very easy, almost trivial, to get information out to people on the web. Important information in /usr/share/doc/wordpress/README.fedora --------------------------------------------------------------------------------Update Information: **WordPress 5.2.4 Security Release** WordPress versions 5.2.3 and earlier are affected by these bugs, which are fixed in version 5.2.4. **Security Updates** * Props to Evan Ricafort for finding an issue where stored XSS (cross-site scripting) could be added via the Customizer. * Props to J.D. Grimes who found and disclosed a method of viewing unauthenticated posts. * Props to Weston Ruter for finding a way to create a stored XSS to inject Javascript into style tags. * Props to David Newman for highlighting a method to poison the cache of JSON GET requests via the Vary: Origin header. * Props to Eugene Kolodenker who found a server-side request forgery in the way that URLs are validated. * Props to Ben Bidner of the WordPress Security Team who discovered issues related to referrer validation in theadmin. --------------------------------------------------------------------------------ChangeLog: * Tue Oct 15 2019 Remi Collet - 5.2.4-1 - WordPress 5.2.4 Security Release --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-f21ad78845' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Update to wordpress 4.8.3. See: https://wordpress.org/news/2017/10/wordpress-4-8-3-security-release/ for details. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-9d0ff8d851 2017-11-15 21:26:26.921478 --------------------------------------------------------------------------------Name : wordpress Product : Fedora 25 Version : 4.8.3 Release : 1.fc25 URL : https://wordpress.org/ Summary : Blog tool and publishing platform Description : Wordpress is an online publishing / weblog package that makes it very easy, almost trivial, to get information out to people on the web. Important information in /usr/share/doc/wordpress/README.fedora --------------------------------------------------------------------------------Update Information: Update to wordpress 4.8.3. See: https://wordpress.org/news/2017/10/wordpress-4-8-3-security-release/ for details --------------------------------------------------------------------------------References: [ 1 ] Bug #1508255 - wordpress-4.8.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1508255 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade wordpress' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.