oss-sec mailing list archives

Re: CVE Request -- WordPress v3.1.2


From: Josh Bressers <bressers () redhat com>
Date: Mon, 2 May 2011 15:42:32 -0400 (EDT)

----- Original Message -----
Hello Josh, Steve, vendors,

WordPress upstream has released v3.1.2 addressing one security issue:
[1] http://wordpress.org/news/

More from [1]:
"This release addresses a vulnerability that allowed Contributor-level
users to improperly publish posts.  The issue was discovered by a member
of our security team, WordPress developer Andrew Nacin, with Benjamin
Balter."


Please use CVE-2011-1762.

Thanks.

-- 
    JB


Current thread: