Two cross site scripting bugs have been squashed:
- Properly encode title used in Quick/Bulk Edit, and offer additional sanitization to various fields. Affects users of the Author or Contributor role.
- Preserve tag escaping in the tags meta box. Affects users of the Author or Contributor role.
All WordPress administrators are encouraged to upgrade to this latest version. You can update automatically from the Dashboard > Updates menu in your site’s admin area or download 3.0.5 directly
No comments:
Post a Comment