WordPress 3.7

From WordPress.org:

Version 3.7 of WordPress, named “Basie” in honor of Count Basie, is available for download or update in your WordPress dashboard. This release features some of the most important architectural updates we’ve made to date. Here are the big ones:

  • Updates while you sleep: With WordPress 3.7, you don’t have to lift a finger to apply maintenance and security updates. Most sites are now able to automatically apply these updates in the background. The update process also has been made even more reliable and secure, with dozens of new checks and safeguards.
  • Stronger password recommendations: Your password is your site’s first line of defense. It’s best to create passwords that are complex, long, and unique. To that end, our password meter has been updated in WordPress 3.7 to recognize common mistakes that can weaken your password: dates, names, keyboard patterns (123456789), and even pop culture references.
  • Better global support: Localized versions of WordPress will receive faster and more complete translations. WordPress 3.7 adds support for automatically installing the right language files and keeping them up to date, a boon for the many millions who use WordPress in a language other than English.

WordPress 3.7

We first used WordPress back in 2006 and have been using it ever since. After a few MySQL DataBase meltdown, due to misconfiguration by the web-host, we somewhat mirrored the content of 37prime.news at WordPress.com. Throughout the years, we watched WordPress gaining new features including the ever important WordPress-Update feature. Throughout the years we have also been recommending WordPress to our colleagues and friends.

Thank You to Matt Mullenweg, Automattic and WordPress.org for creating and maintaining this fantastic platform.

p.s. We love this WordPress 3.7 version number for an obvious reason.

37′

WordPress 3.6.1

WordPress 3.6.1 is now available.

Summary

From the announcement post, this maintenance release addresses 13 bugs with version 3.6.

Additionally: Version 3.6.1 fixes three security issues:

  • Remote Code Execution: Block unsafe PHP de-serialization that could occur in limited situations and setups, which can lead to remote code execution. Reported by Tom Van Goethem. CVE pending.
  • Privilege Escalation: Prevent a user with an Author role, using a specially crafted request, from being able to create a post “written by” another user. Reported by Anakorn Kyavatanakij. CVE pending.
  • Link Injection / Open Redirect: Fix insufficient input validation that could result in redirecting or leading a user to another website. Reported by Dave Cummo, a Northrup Grumman subcontractor for the U.S. Centers for Disease Control and Prevention. CVE pending.

Additional security hardening:

  • Updated security restrictions around file uploads to mitigate the potential for cross-site scripting. The extensions .swf and .exe are no longer allowed by default, and .htm and .html are only allowed if the user has the ability to use unfiltered HTML.

A full log of the changes made for 3.6.1 can be found at http://core.trac.wordpress.org/log/branches/3.6?stop_rev=24972&rev=25345.

WordPress 3.6.1

WordPress 3.7 for iOS

WordPress 3.7 for iOS on iPad

The folks at Automattic has released an update to WordPress for iOS.

What’s New in Version 3.7
• New native WordPress.com Reader: A faster and more beautiful reading experience.
• New account system to ensure that your WordPress.com account remains as safe and as secure as ever, including when you change your password or use two-step authentication.
• Updated translations: The app is now available in Thai.
• Multiple crash and bug fixes.

WordPress-3.7-for-iOS

 

WordPress 3.6 is Released

WordPress 3.6 “Oscar” is released.

The latest and greatest WordPress, version 3.6, is now live to the world and includes a beautiful new blog-centric theme, bullet-proof autosave and post locking, a revamped revision browser, native support for audio and video embeds, and improved integrations with Spotify, Rdio, and SoundCloud.

WordPress 3.6 Update

User Features

  • The new Twenty Thirteen theme inspired by modern art puts focus on your content with a colorful, single-column design made for media-rich blogging.
  • Revamped Revisions save every change and the new interface allows you to scroll easily through changes to see line-by-line who changed what and when.
  • Post Locking and Augmented Autosave will especially be a boon to sites where more than a single author is working on a post. Each author now has their own autosave stream, which stores things locally as well as on the server (so much harder to lose something) and there’s an interface for taking over editing of a post, as demonstrated beautifully by our bearded buddies in the video above.
  • Built-in HTML5 media player for native audio and video embeds with no reliance on external services.
  • The Menu Editor is now much easier to understand and use.

It is highly recommended to upgrade to the latest version of WordPress.

So, it’s Matt’s fault?

You might have seen the error message on WordPress.com:

Goshdarnit!

Something has gone wrong with our servers. It’s probably Matt’s fault.

We’ve just been notified of the problem.

Hopefully this should be fixed ASAP, so kindly reload in a minute and things should be back to normal.

Well, I blame Matt too.

WordPress Error is Matt's Fault