September 11th, 2008
平平常常升级到WordPress2.6.2
Category: wordpress, 博言, 技术, 统计, Author: 阿七, Popularity: 4% [?]
平平常常升级到WordPress2.6.2
对于小的版本更新,我没有备份,就直接覆盖,升级了。之后访问wp-admin/upgrade.php,没想到提示,没有什么更新的。也是,版本太小,没什么升级的。
不过我不能看着提示不管,于是升级了。看报告,WordPress2.6.1升级到2.6.2,实在没什么更新的地方,说有几处Bug更新,实在是不能列举。
不过其中的一个,还算不过的,就是“With open registration enabled, it is possible in WordPress versions 2.6.1 and earlier to craft a username such that it will allow resetting another user’s password to a randomly generated password. The randomly generated password is not disclosed to the attacker, so this problem by itself is annoying but not a security exploit. ”。一个很可能受到随机密码注册攻击的安全漏洞。我开启了注册这个功能,于是这一点上,我升级了!
改变的文件列表:
tags/2.6.2/wp-login.php (modified) (1 diff)
tags/2.6.2/wp-includes/post.php (modified) (3 diffs)
tags/2.6.2/wp-includes/version.php (modified) (1 diff)
tags/2.6.2/wp-includes/query.php (modified) (8 diffs)
tags/2.6.2/wp-includes/formatting.php (modified) (1 diff)
tags/2.6.2/wp-includes/pluggable.php (modified) (1 diff)
tags/2.6.2/wp-includes/widgets.php (modified) (1 diff)
tags/2.6.2/wp-settings.php (modified) (1 diff)
tags/2.6.2/wp-admin/includes/template.php (modified) (1 diff)
tags/2.6.2/wp-admin/includes/image.php (modified) (1 diff)
tags/2.6.2/wp-admin/import/textpattern.php (modified) (1 diff)
tags/2.6.2/wp-admin/css/press-this-ie.css (modified) (1 diff, 1 prop)
Via the full changeset and list of changed files.
什么?上面的文章不过瘾?我还特意准备了这些:
Update, Web, wordpress.
评论数量(2) | Add Comments
本文网址:http://blog.designlinks.cn/blogs/wp-update-to-262.html
我的版本还是2.3.1的。已经搬进新家了,^_^ 最近打算和朋友建正规站,正在考虑主题以及资源准备,你有好的意见吗?很想听听!
Beach回复:
呵呵,我之前买了LP主机,在筹划建一个Flash资源站点。
呵呵,这方面我懂一些。
用那个自动更新的插件就不用自己上传了。
Beach回复:
能自动上传汉化的吗?安全问题我没敢尝试。