While looking through my security RSS feeds I found out that there is a XSS in older versions of the RSS plugin. It seems to have been fixed in the latest version if s9y.
More info: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6205
Back to work I go...
Security Warning -- Upgrade to 1.2.1
-
- Core Developer
- Posts: 30022
- Joined: Tue Sep 16, 2003 9:45 pm
- Location: Cologne, Germany
- Contact:
Re: Security Warning -- Upgrade to 1.2.1
Hi!
Note that you only need to upgrade when using the Remote RSS sidebar plugin. Not soo many blogs even have that enabled.
Also be sure to subscribe to blog.s9y.org, it contains new version announcements.
Regards,
Garvin
Note that you only need to upgrade when using the Remote RSS sidebar plugin. Not soo many blogs even have that enabled.
Also be sure to subscribe to blog.s9y.org, it contains new version announcements.
Regards,
Garvin
# Garvin Hicking (s9y Developer)
# Did I help you? Consider making me happy: http://wishes.garv.in/
# or use my PayPal account "paypal {at} supergarv (dot) de"
# My "other" hobby: http://flickr.garv.in/
# Did I help you? Consider making me happy: http://wishes.garv.in/
# or use my PayPal account "paypal {at} supergarv (dot) de"
# My "other" hobby: http://flickr.garv.in/