<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>gHacks technology news &#187; wordpress bugs</title>
	<atom:link href="http://www.ghacks.net/tag/wordpress-bugs/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Tue, 24 Nov 2009 11:26:04 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Wordpress 2.7.1 Update</title>
		<link>http://www.ghacks.net/2009/02/11/wordpress-271-update/</link>
		<comments>http://www.ghacks.net/2009/02/11/wordpress-271-update/#comments</comments>
		<pubDate>Tue, 10 Feb 2009 22:59:07 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[software]]></category>
		<category><![CDATA[blog software]]></category>
		<category><![CDATA[wordpress]]></category>
		<category><![CDATA[wordpress 2.7.1]]></category>
		<category><![CDATA[wordpress blog]]></category>
		<category><![CDATA[wordpress bugs]]></category>
		<category><![CDATA[wordpress update]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=10460</guid>
		<description><![CDATA[Seems the Wordpress developers have finally released a new version of the free blog software. The update to Wordpress 2.7.1 (from 2.7) is a maintenance release which fixes 68 tickets. It is therefor a recommended upgrade and should be applied by Wordpress webmasters as soon as possible. The Wordpress tracker which is mentioned on the [...]]]></description>
			<content:encoded><![CDATA[<p>Seems the Wordpress developers have finally released a new version of the free blog software. The update to Wordpress 2.7.1 (from 2.7) is a maintenance release which fixes 68 tickets. It is therefor a recommended upgrade and should be applied by Wordpress webmasters as soon as possible. The Wordpress tracker which is mentioned on the update page is currently unavailable which is probably due to the release announcement which is visible for every admin in the Wordpress interface.</p>
<p>You can download the latest version of <a href="http://wordpress.org/development/2009/02/wordpress-271/">Wordpress</a> from the official website or apply the upgrade manually in the Wordpress interface. You can take a look at in depth file changes by following <a href="http://trac.wordpress.org/changeset?old_path=tags%2F2.7&#038;old=10539&#038;new_path=tags%2F2.7.1&#038;new=10539">this</a> link or at the 68 tickets that have been closed <a href="http://trac.wordpress.org/query?status=closed&#038;milestone=2.7.1&#038;resolution=fixed&#038;order=priority">here</a>.</p>
<p>The update includes six tickets with a high rating and more than 50 rated as normal. While the update does not list many security fixes it is still recommended to update as soon as possible. The update will not alter the database and should not break anything including plugins or themes.</p>
<p><span id="more-10460"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/blog-software/" title="blog software" rel="tag">blog software</a>, <a href="http://www.ghacks.net/tag/wordpress/" title="wordpress" rel="tag">wordpress</a>, <a href="http://www.ghacks.net/tag/wordpress-271/" title="wordpress 2.7.1" rel="tag">wordpress 2.7.1</a>, <a href="http://www.ghacks.net/tag/wordpress-blog/" title="wordpress blog" rel="tag">wordpress blog</a>, <a href="http://www.ghacks.net/tag/wordpress-bugs/" title="wordpress bugs" rel="tag">wordpress bugs</a>, <a href="http://www.ghacks.net/tag/wordpress-update/" title="wordpress update" rel="tag">wordpress update</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/11/25/wordpress-265-security-update/" title="Wordpress 2.6.5 Security Update (November 25, 2008)">Wordpress 2.6.5 Security Update</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/04/25/wordpress-251-released/" title="Wordpress 2.5.1 released (April 25, 2008)">Wordpress 2.5.1 released</a> (1)</li>
	<li><a href="http://www.ghacks.net/2009/02/02/wordpress-your-attempt-to-edit-this-post-has-failed/" title="Wordpress: Your attempt to edit this post has failed (February 2, 2009)">Wordpress: Your attempt to edit this post has failed</a> (8)</li>
	<li><a href="http://www.ghacks.net/2008/07/27/wordpress-issues/" title="Wordpress Issues (July 27, 2008)">Wordpress Issues</a> (16)</li>
	<li><a href="http://www.ghacks.net/2007/12/01/wordpress-incorrect-password/" title="Wordpress Incorrect Password (December 1, 2007)">Wordpress Incorrect Password</a> (2)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2009/02/11/wordpress-271-update/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Wordpress Incorrect Password</title>
		<link>http://www.ghacks.net/2007/12/01/wordpress-incorrect-password/</link>
		<comments>http://www.ghacks.net/2007/12/01/wordpress-incorrect-password/#comments</comments>
		<pubDate>Sat, 01 Dec 2007 09:10:09 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Knowledge]]></category>
		<category><![CDATA[The Web]]></category>
		<category><![CDATA[wordpress]]></category>
		<category><![CDATA[wordpress bugs]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/12/01/wordpress-incorrect-password/</guid>
		<description><![CDATA[Cheryl emailed me this morning telling me that her password would not be accepted by Wordpress after registering a new account although she was sure that she did type it correctly. The message that would appear was always "Incorrect Password". My first step of solving this problem was to change the password to "test" and try the login procedure again.]]></description>
			<content:encoded><![CDATA[<p>Cheryl emailed me this morning telling me that her password would not be accepted by Wordpress after registering a new account although she was sure that she did type it correctly. The message that would appear was always &#8220;Incorrect Password&#8221;. My first step of solving this problem was to change the password to &#8220;test&#8221; and try the login procedure again.</p>
<p>This did not work as well and the Incorrect Password screen did appear again. I then tried to generate a new password but this was also not accepted. I headed out and performed some searches for a solution and finally found it. </p>
<p>It seems that Wordpress is having problems with upper case usernames. Cheryl registered her account with a upper case C. I deleted that account, registered again with cheryl as the username instead and et voila, I was able to login immediately with the password that was send to my email address.</p>
<p><span id="more-2104"></span>This will hopefully help all the other users who use upper case letters in their Wordpress usernames only to find out that login in with them does not work.</p>

	Tags: <a href="http://www.ghacks.net/tag/wordpress/" title="wordpress" rel="tag">wordpress</a>, <a href="http://www.ghacks.net/tag/wordpress-bugs/" title="wordpress bugs" rel="tag">wordpress bugs</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/02/11/wordpress-271-update/" title="Wordpress 2.7.1 Update (February 11, 2009)">Wordpress 2.7.1 Update</a> (3)</li>
	<li><a href="http://www.ghacks.net/2008/08/05/zoundry-raven-portable-blog-editor/" title="Zoundry Raven portable Blog Editor (August 5, 2008)">Zoundry Raven portable Blog Editor</a> (6)</li>
	<li><a href="http://www.ghacks.net/2009/02/02/wordpress-your-attempt-to-edit-this-post-has-failed/" title="Wordpress: Your attempt to edit this post has failed (February 2, 2009)">Wordpress: Your attempt to edit this post has failed</a> (8)</li>
	<li><a href="http://www.ghacks.net/2009/03/29/wordpress-template-tags-you-should-know/" title="Wordpress template tags you should know (March 29, 2009)">Wordpress template tags you should know</a> (4)</li>
	<li><a href="http://www.ghacks.net/2009/04/16/wordpress-seo-advanced-nofollow/" title="Wordpress SEO: Advanced Nofollow (April 16, 2009)">Wordpress SEO: Advanced Nofollow</a> (3)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/12/01/wordpress-incorrect-password/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Secure Wordpress with the first Wordpress Worm</title>
		<link>http://www.ghacks.net/2007/08/02/secure-wordpress-with-the-first-wordpress-worm/</link>
		<comments>http://www.ghacks.net/2007/08/02/secure-wordpress-with-the-first-wordpress-worm/#comments</comments>
		<pubDate>Thu, 02 Aug 2007 15:57:18 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Tools]]></category>
		<category><![CDATA[security vulnerabilities]]></category>
		<category><![CDATA[wordpress bugs]]></category>
		<category><![CDATA[wordpress exploits]]></category>
		<category><![CDATA[wordpress patch]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/08/02/secure-wordpress-with-the-first-wordpress-worm/</guid>
		<description><![CDATA[Did you know that the latest version of Wordpress contains at least seven security vulnerabilities that could compromise your blog ? If you use Wordpress you should make sure that to fix them as soon as possible. The easiest way to fix them right now is to use the first Wordpress worm - which is a good one - to fix all seven vulnerabilities for you.]]></description>
			<content:encoded><![CDATA[<p>Did you know that the latest version of Wordpress contains at least <a href="http://mybeni.rootzilla.de/mybeNi/2007/wordpress_zeroday_vulnerability_roundhouse_kick_and_why_i_nearly_wrote_the_first_blog_worm/">seven</a> security vulnerabilities that could compromise your blog ? If you use Wordpress you should make sure that to fix them as soon as possible. The easiest way to fix them right now is to use the first Wordpress worm &#8211; which is a good one &#8211; to fix all seven vulnerabilities for you.</p>
<p>The process requires some faith that the <a href="http://mybeni.rootzilla.de/mybeNi/2007/this_is_the_first_weblog_xss_worm/">xss worm</a> is really fixing the vulnerabilities but the application itself is easy. About the faith: I have not read negative reviews so far and the worm has been released two days ago which should be enough time for some experts to complain about it.</p>
<p>If you want to secure your blog you simply write a comment on your own blog while you are logged in as the administrator linking to http://mybeni.rootzilla.de/mybeNi/ ; Click on that link from your admin panel afterwards which will lead to the site.</p>
<p><span id="more-1825"></span>The first page explains what will be done and only if you actively click on &#8220;Secure my Blog&#8221; the vulnerability scan will be started. It will check three Wordpress files for the vulnerabilities and offer to fix them if the vulnerability is found. </p>
<p>The vulnerabilities can only be fixed if the files are writable so make sure they are. An alternative would be to copy the code that will be inserted and add it manually in the files. The complete code of the file is shown and the addition is highlighted. </p>
<p>I suggest to run the worm a second time to make sure that your blog is safe and that the fixes have been applied.</p>

	Tags: <a href="http://www.ghacks.net/tag/security-vulnerabilities/" title="security vulnerabilities" rel="tag">security vulnerabilities</a>, <a href="http://www.ghacks.net/tag/wordpress-bugs/" title="wordpress bugs" rel="tag">wordpress bugs</a>, <a href="http://www.ghacks.net/tag/wordpress-exploits/" title="wordpress exploits" rel="tag">wordpress exploits</a>, <a href="http://www.ghacks.net/tag/wordpress-patch/" title="wordpress patch" rel="tag">wordpress patch</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2007/12/01/wordpress-incorrect-password/" title="Wordpress Incorrect Password (December 1, 2007)">Wordpress Incorrect Password</a> (2)</li>
	<li><a href="http://www.ghacks.net/2009/02/11/wordpress-271-update/" title="Wordpress 2.7.1 Update (February 11, 2009)">Wordpress 2.7.1 Update</a> (3)</li>
	<li><a href="http://www.ghacks.net/2008/04/18/windows-vulnerability-scanner/" title="Windows Vulnerability Scanner (April 18, 2008)">Windows Vulnerability Scanner</a> (4)</li>
	<li><a href="http://www.ghacks.net/2008/04/24/microsoft-updates-two-critical-security-patches/" title="Microsoft updates two critical security patches (April 24, 2008)">Microsoft updates two critical security patches</a> (5)</li>
	<li><a href="http://www.ghacks.net/2008/05/16/microsoft-security-updates-may-2008/" title="Microsoft Security Updates May 2008 (May 16, 2008)">Microsoft Security Updates May 2008</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/08/02/secure-wordpress-with-the-first-wordpress-worm/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
	</channel>
</rss>
