WordPress 4.0.1

Welcome to WordPress 4.0.1

WordPress 4.0.1 is out now.

  • Three cross-site scripting issues that a contributor or author could use to compromise a site. Discovered by Jon Cave, Robert Chapin, and John Blackbourn of the WordPress security team.
  • A cross-site request forgery that could be used to trick a user into changing their password.
  • An issue that could lead to a denial of service when passwords are checked. Reported by Javier Nieto Arevalo and Andres Rojas Guerrero.
  • Additional protections for server-side request forgery attacks when WordPress makes HTTP requests. Reported by Ben Bidner (vortfu).
  • An extremely unlikely hash collision could allow a user’s account to be compromised, that also required that they haven’t logged in since 2008 (I wish I were kidding). Reported by David Anderson.
  • WordPress now invalidates the links in a password reset email if the user remembers their password, logs in, and changes their email address. Reported separately by Momen Bassel, Tanoy Bose, and Bojan Slavković of ManageWP.

I would say that it is mandatory to update your WordPress installation, because of these important security fixes.

WordPress 4.0.1 for iOS

WordPress 4.0.1 for iOS is now available for download.

Some of the updates included are:

  • Improved the performance of stats.
  • Made the “Options” page easier to locate and access.
  • Fixed a bug that caused the app to freeze when you tried to update a post’s settings.
  • Fixed a bug that stopped you from moving the cursor to the end of a line.
  • Fixed a bug that broke the UI when you inserted a link in the post editor.
  • Fixed a bug that crashed the app when you added a featured image to a post.
  • Increased the minimum required version of WordPress to 3.6.
  • Fixed a bug that caused the post editor to malfunction if you inserted a link.

WordPress 4.0.1 for iOS

WordPress 3.6 is Released

WordPress 3.6 “Oscar” is released.

The latest and greatest WordPress, version 3.6, is now live to the world and includes a beautiful new blog-centric theme, bullet-proof autosave and post locking, a revamped revision browser, native support for audio and video embeds, and improved integrations with Spotify, Rdio, and SoundCloud.

WordPress 3.6 Update

User Features

  • The new Twenty Thirteen theme inspired by modern art puts focus on your content with a colorful, single-column design made for media-rich blogging.
  • Revamped Revisions save every change and the new interface allows you to scroll easily through changes to see line-by-line who changed what and when.
  • Post Locking and Augmented Autosave will especially be a boon to sites where more than a single author is working on a post. Each author now has their own autosave stream, which stores things locally as well as on the server (so much harder to lose something) and there’s an interface for taking over editing of a post, as demonstrated beautifully by our bearded buddies in the video above.
  • Built-in HTML5 media player for native audio and video embeds with no reliance on external services.
  • The Menu Editor is now much easier to understand and use.

It is highly recommended to upgrade to the latest version of WordPress.

February 09, 2010 – Apple Store is Down for Updates.

Update: Apple introduces Aperture 3

It’s 4:00 AM and I’m still awake, don’t know why.

Anyway, Apple Store is down for updates. I bet they’re going to add the fabled 16-core MacBook Pro today…errr…that doesn’t really exist. I’m really hoping a Quad-Core MacBook Pro.

Based on the circulating rumors, Core i5 and Core i7 MacBook Pro is coming really soon.

Now, if only I could get that one company the salary they owe me, I could immediately buy the 16-core MacBook Pro.