WordPress的2.8.2,修补XSS漏洞补丁。当在管理显示评论作者的网址时不完全过滤。这可以被恶意用来重定向您远离管理到另一个网站。下载2.8.2或在管理面板工具->升级,升级您的博客网页。
WordPress 2.8.2
Posted July 20, 2009 by Ryan Boren. Filed under Releases.
WordPress 2.8.2 fixes an XSS vulnerability. Comment author URLs were not fully sanitized when displayed in the admin. This cou...
使用自动升级失败。
下载失败。:
Operation timed out after 30 seconds with 1524600 bytes received
网上查找时
Core and plugins auto-upgrade work fine now at slow connection. But I should to change timeout in function download_url() at wp-admin/includes/file.php to higher value. And after each update - change it again.
修改 wp-admin/includes/file.php
把 444行的 $response = w...