Pullup ticket #2933 - requested by adrianp
authortron <tron>
Fri, 13 Nov 2009 11:07:27 +0000 (11:07 +0000)
committertron <tron>
Fri, 13 Nov 2009 11:07:27 +0000 (11:07 +0000)
commita2facf2aab645d56477c6ba3867b97b01acbb16f
tree0e32c432ecc91eff9e4f52e10475c9e561c0acff
parent07d302f7fe1ab38fe393b47b516036601491f8d8
Pullup ticket #2933 - requested by adrianp
wordpress: security update

Revisions pulled up:
- www/wordpress/Makefile 1.6
- www/wordpress/PLIST 1.4
- www/wordpress/distinfo 1.5
---
Module Name:    pkgsrc
Committed By:   adrianp
Date:           Thu Nov 12 22:05:55 UTC 2009

Modified Files:
        pkgsrc/www/wordpress: Makefile PLIST distinfo

Log Message:
Update to 2.8.6

- 2.8.5
* Fix for trackback DOS
* Removal of permalink_structure eval
* Remove some create_function() calls
* Disallow unfiltered uploads by default, even for admins. Enable it again with
define('ALLOW_UNFILTERED_UPLOADS', true); in wp-config.php
* Add extra escapes here and there for some backside coverage
* Retire two old importers
* A few small bug fixes

- 2.8.6
* Fixed an XSS vulnerability in Press This
* Fixed issue with sanitizing uploaded file names that can be exploited in
certain Apache configurations
www/wordpress/Makefile
www/wordpress/PLIST
www/wordpress/distinfo