YNOT
  • Home
  • Industry News
    • Adult Business News
    • Adult Novelty News
    • YNOT Magazine
    • EU News
    • Opinions
    • Picture Galleries
  • PR Wire
    • Adult Company News
    • Adult Retail News
    • Adult Talent News
    • Adult Videos News
  • Podcasts
  • Industry Guides
    • Adult Affiliate Guide
    • Affiliate Marketing for Beginners
    • Top Adult Traffic Networks
    • Top Adult PR Agents
    • Funding an Adult Business
  • Business Directory
    • View Categories
    • View Listings
    • Submit Listing
  • Newsletters
  • Industry Events
    • Events Calendar
    • YNOT Cam Awards | Hollywood
    • YNOT Awards | Prague
    • YNOT Cammunity
    • YNOT Summit
    • YNOT Reunion
  • Login with YNOT ID

WordPress Issues Urgent Security Update

Posted On 13 Mar 2017
By : Marty O'Brien

For the second time in six weeks, the WordPress Foundation has issued a new release of its iconic website platform to patch serious security vulnerabilities.For the second time in six weeks, the WordPress Foundation has issued a new release of its iconic website platform to patch serious security vulnerabilities.

WordPress 4.7.3 overrides all previous versions, and the company “strongly encourages” all users to apply the update immediately.

The new version addresses:

Cross-site scripting (XSS) via media file metadata.
Control characters can trick redirect URL validation.
Unintended files can be deleted by administrators using the plugin deletion functionality.
XSS via video URL in YouTube embeds.
XSS via taxonomy term names.
Cross-site request forgery (CSRF) in the Press This module leading to excessive use of server resources.

Version 4.7.3 also contains 39 maintenance fixes.

On Jan. 26, WordPress released version 4.7.2, which apparently not only patched some security issues in the previous release but also created at least one of the issues addressed by the most recent release. In 4.7.2, WordPress fixed a taxonomy issue in Press This, evidently causing the CSRF problem fixed by 4.7.3.

Version 4.7.2 also patched a vulnerability that made WP_Query vulnerable to SQL injection when passing unsafe data. Though the WP core itself was not affected, WordPress developers hardened the code to prevent theme and plugin designers from accidentally causing a security hole.

WordPress 4.7.2 also patched an extremely serious unauthenticated privilege escalation vulnerability in a REST API endpoint that been introduced in version 4.7. According to WordPress core contributor Aaron D. Campbell, the vulnerability was never exploited in the wild.

 

About the Author
Raised in the Appalachian Mountains of Kentucky, Marty O'Brien was the first of the O'Brien clan to obtain a college degree. A former sports journalist, O'Brien got a peek at the inner workings of the adult entertainment industry while on an assignment to cover the Los Angeles Lakers. He joined the YNOT editorial team in late 2010 and now specializes in technology , business news and ogling starlets.
  • google-share
Previous Story

YNOT Grand Prix Phoenix: Hot Fun in the Arizona Desert

Next Story

Fleshlight Launch, an Interactive Male Masturbator

Related Posts

Intimate.io

Intimate.io WordPress Plugin Now Available

Posted On 15 Apr 2019
, By GeneZorkin

How to Survive Facebook’s New Linking Policy

Posted On 25 Aug 2017
, By admin

Leave a Reply Cancel reply

You must be logged in to post a comment.

Sponsor

YNOT Shoot Me

YNOTShootMe.com has exclusive pics from adult industry business events. Check it out!

YNOT Directory

  • Kiiroo
    Novelty & Lingerie Manufacturers
  • AdultEverything.net
    Marketing & Traffic Services
  • Money Shot Pills
    Novelty & Lingerie Distributors
  • Premiere Listing

    Mail Value Profits

    More Details

RECENT

POPULAR

COMMENTS

TadpoleXStudio Bows Juicy New Harley Love Anal Creampie Scene

Posted On 16 Sep 2025

Queen Ava Racks Unleashes New Ebony Femdom Roleplays With Submissive White Men

Posted On 16 Sep 2025

Fucking Your Stepmom is Better Than Video Games

Posted On 16 Sep 2025

Vanessa, Meet Vivid

Posted On 29 Sep 2014
Laila Mickelwaite and Exodus Cry

Laila Mickelwaite, Exodus Cry and their Crusade Against Porn

Posted On 03 May 2021

Someone puts Gal Gadot in one of your vids? Take it down!

Posted On 13 Dec 2017

Hoping viewers can also enjoy a spooky...

Posted On 24 Oct 2023

now a days these type of games will get...

Posted On 17 Jul 2023

good move from adent. these type of...

Posted On 06 Jul 2023

Sponsor

Sitemap
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.OkPrivacy Policy