WordPress Security und Bugfix Release 4.9.1 erschienen

Das WordPress Team hat das Update 4.9.1 veröffentlicht. Mit diesem Update werden 4 Sicherheitslücken, die in allen Versionen existieren, sowie 11 Fehler behoben.

WordPress 4.9.1 Release Notes

  1. Use a properly generated hash for the newbloguser key instead of a determinate substring.
  2. Add escaping to the language attributes used on html elements.
  3. Ensure the attributes of enclosures are correctly escaped in RSS and Atom feeds.
  4. Remove the ability to upload JavaScript files for users who do not have the unfiltered_html capability.
  • #42573: File caching affecting users’ ability to use the plugin and theme file editors.
  • #42574: MediaElement upgrade causing JS errors when certain languages are in use.
  • #42579: Incorrect logic in extract_from_markers().
  • #42454: Unable to translate Codex URL in theme editor.
  • #42609: Theme editor cannot edit files when running on a Windows server.
  • #42628flatten_dirlist() doesn’t play nice with folders with numeric names.
  • #42634DB_HOST socket paths with colons not parsed correctly.
  • #42641: On multisite upgrade the wp_blog_versions table doesn’t get updated
  • #42673: Themes page throws console error when there is only one installed theme
  • #42242lang attribute in the admin area doesn’t reflect a user’s language setting

Schreibe einen Kommentar

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert.