[NCUC E-team] Wordpress

Tapani Tarvainen ncuc at tapani.tarvainen.info
Thu Dec 11 16:17:35 CET 2014


On Thu, Dec 11, 2014 at 04:41:02PM +0200, Tapani Tarvainen (ncuc at tapani.tarvainen.info) wrote:

> I just realized (as I guess I should've done long ago)
> nobody's been updating Wordpress since... 2013, apparently,
> and it's gotten way behind - in particular, it has
> the currently widely exploited vulnerability.

Looking a bit closer, it's not as bad as I feared
(in particular comments aren't allowed, and the worst
hole is in the comments plugin). There are a number of
less critical bugs though, so, nonetheless:

> It really should be updated ASAP.

-- 
Tapani Tarvainen



More information about the E-team mailing list