WordPress 4.9.1 -Security and Maintenance Release


A new version of WordPress has been released. WordPress users are advised to update to 4.9.1 as soon as possible, especially if you are running a version of WordPress >= 3.7.


WordPress 4.9.1

Some of the fixes include:

  1. Use a properly generated hash for the newbloguser key instead of a determinate substring.
  2. Add escaping to the language attributes used on html elements.
  3. Ensure the attributes of enclosures are correctly escaped in RSS and Atom feeds.
  4. Remove the ability to upload JavaScript files for users who do not have the unfiltered_html capability.

Updating WordPress is as simple as navigating to Dashboard → Updates and clicking Update Now or alternatively by downloading directly.
Your website may be up to date if your site supports automatic background updates, so in cases there may be no need to manually update.

As always, our thanks goes to the great community members acting out responsible disclosure, and the amazing WordPress development team for their quick patching.
Don’t delay, upgrade today!


Rate this post 1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading...

This entry was posted in General. Bookmark the permalink.

Leave a Reply

Please DO NOT use this form to submit support requests, all information submitted will be PUBLICLY VISIBLE.

Required fields are marked *

Time limit is exhausted. Please reload CAPTCHA.