Behind on WordPress updates — Themes, plugins and WP 4.6.1
Posted By RichC on September 7, 2016
Updated WordPress to 4.6.1 and some housekeeping. All running as it should.
Summary
From the WordPress 4.6.1 release post: WordPress versions 4.6 and earlier are affected by two security issues: a cross-site scripting vulnerability via image filename, reported by SumOfPwn researcher Cengiz Han Sahin; and a path traversal vulnerability in the upgrade package uploader, reported by Dominik Schilling from the WordPress security team.
Comments