pkgsrc/www/wordpress
jklos 40428a0a7f Security update 4.7.5. Bugs fixed:
Insufficient redirect validation in the HTTP class. Reported by Ronni
Skansing.
Improper handling of post meta data values in the XML-RPC API. Reported by
Sam Thomas.
Lack of capability checks for post meta data in the XML-RPC API. Reported
by Ben Bidner of the WordPress Security Team.
A Cross Site Request Forgery (CSRF)  vulnerability was discovered in the
filesystem credentials dialog. Reported by Yorick Koster.
A cross-site scripting (XSS) vulnerability was discovered when attempting
to upload very large files. Reported by Ronni Skansing.
A cross-site scripting (XSS) vulnerability was discovered related to the
Customizer. Reported by Weston Ruter of the WordPress Security Team.
2017-05-30 07:20:15 +00:00
..
files pkgsrc changes to package: 2016-08-22 18:11:04 +00:00
DESCR
distinfo Security update 4.7.5. Bugs fixed: 2017-05-30 07:20:15 +00:00
Makefile Security update 4.7.5. Bugs fixed: 2017-05-30 07:20:15 +00:00
MESSAGE
options.mk pkgsrc changes to package: 2016-08-22 18:11:04 +00:00
PLIST Security update to version 4.7.3. 2017-03-07 17:39:13 +00:00