wordpress.org — Recently a bug in certain versions of PHP came to our attention that could cause a security vulnerability in your blog. We’re able to work around it fairly easily, so we’ve decided to release 2.0.7 to fix the PHP security problem and the Feedburner issue that was in 2.0.6. It is recommended that everyone running
Jan 15, 2007 View in Crawl 4
parsapJan 16, 2007
Is it easy to upgrade if you have a custom theme for your site?
andybeardJan 16, 2007
The unofficial patch version is located at<a class="user" href="http://markjaquith.wordpress.com/2007/01/15/wordpress-207-upgrade-changed-files-zip-changes-diff-changed-files-list/">http://markjaquith.wordpress.com/2007/01/15/wordpress-207-upgrade-changed-files-zip-changes-diff-changed-files-list/</a>
tcurdtJan 16, 2007
Why can't they finally come up with an easier upgrade mechanism. Seems like I should try the suggested svn checkout ...this is absolutely annoying
webguruJan 16, 2007
A good php programmer knows that using register_globals in php is a big security hole. This bug in php proofs that again.Result of this bug: People who write software like Wordpress need to update their software to "close" the hole. Who's wrong here?Well, the php programmer AND the people who write Wordpress. It's simply stupid to use register globals nowadays. People think that supporting backwards compatibility for webservers is a good thing, but I think security is more important than features. If you think otherwise, you aren't a good programmer.
bitcloudJan 16, 2007
Rubbx... there are a lot of poor programmersSteve Jobs is a rich programmer...The difference? Jobs makes his stuff dead simple to use... not necessarily powerful, but good coding is automating those four lines of code change.
andybeardJan 18, 2007
I don't use custom templates as such, I just modify either free or paid templates for all my blogs