GigaBot
Administrator
WordPress 4.2.3 Alpha is finally released! It fixes very critical 4.2.2 security hole, so Update as soon as possible!
WordPress staff say that this is security and maintenance release for all previous WordPress versions:
WordPress staff say that this is security and maintenance release for all previous WordPress versions:
WordPress versions 4.2.2 and earlier are affected by a critical cross-site scripting vulnerability, which could allow anonymous users to compromise a site. This was reported by Jon Cave of the WordPress Security Team, and fixed by Robert Chapin.
We also fixed an issue where it was possible for a user with Subscriber permissions to create a draft through Quick Draft. Reported by Netanel Rubin from Check Point Software Technologies.