Nov 25, 2008 ~ Lisa Sabin-Wilson

WordPress 2.6.5 Security Upgrade

The WordPress team announced a security upgrade to 2.6.5 that fixes an exploit only affects IP-based virtual servers running on Apache 2.x.  Fortuanately, for Blogs About clients, this only affects our clients on only one of our servers.  If you are hosted on our Kiwi server (IP 76.74.159.114), and are running WordPress on your account, you will want to upgrade to WordPress 2.6.5.  Our Kiwi server is running Apache 2.2.9.  ( The IP of the server you are on is listed in your account CPanel, in the left menu – if is 76.74.159.114 – you’re on Kiwi)

The security issue is an XSS exploit discovered by Jeremias Reith that fortunately only affects IP-based virtual servers running on Apache 2.x. If you are interested only in the security fix, copy wp-includes/feed.php and wp-includes/version.php from the 2.6.5 release package.

2.6.5 contains three other small fixes in addition to the XSS fix. The first prevents accidentally saving post meta information to a revision. The second prevents XML-RPC from fetching incorrect post types. The third adds some user ID sanitization during bulk delete requests. For a list of changed files, consult the full changeset between 2.6.3 and 2.6.5.

Get the WordPress 2.6.5 files from the official WordPress site.

Related Posts:

0 Comments For This Post

1 Trackbacks For This Post

  1. Painless Upgrade to WordPress 2.6.5 | Mission: Communicate

    [...] team over at Blogs About explain the security exploit: only affects IP-based virtual servers running on Apache [...]

Leave a Reply

About Us

Blogs About has been in the business of hosting websites and blogs since 2002. We strive to provide quality and affordable hosting packages that are sure to meet your needs! We understand that not everyone is a ‘guru’ at this website stuff – - so we’re here to help you! Through our video tutorials to support help desk, as well as high-end website and blog design services – we cover it all from A to Z, and all points in between! Read what our clients have to say »

Our co-owner, Lisa Sabin-Wilson is also the talent and brains behind the insanely popular and accomplished E.Webscapes Design Studio. And guess what? Clients who host their site and/or blogs with Blogs About Hosting receive a full 10% discount on design services with E.Webscapes. They are truly experts in custom WordPress design, blog design and website designs using different platforms, as well!

We are experts in the use of the WordPress platform! How can we say that? Lisa Sabin-Wilson literally wrote the book on WordPress, she is the author of the official WordPress For Dummies book. Who better to host your WordPress blog than with one of the people who wrote the book on the program! All of our support techs are experts in WordPress, and several other blogging platforms – such as Movable Type and Expression Engine. Sign up today »

Contact Us

Your Name (required)

Your Email (required)

Your Website

Your Subject (required)

Your Message

10+2=?