WordPress 4.2.1 Security Release For Fixing XSS Vulnerability

WordPress version 4.2.1 has been released and it is available for download to update your existing website based on WordPress. This latest release will improve security of your WordPress website.
 
WILMINGTON, Del. - May 4, 2015 - PRLog -- May 2015 - A new update in the WordPress content management system i.e. WordPress 4.2.1 has been launched by WORDPRESS.ORG on 27 April 2015 to fix the security issues. This latest version is a “Critical Security Release” for all the previous versions of WordPress. The WordPress development team noticed cross-site scripting vulnerability, which may compromise or hamper functionality of a website. Jouko Pynnonen discovered this issue in the web applications. WordPress 4.2.1 security update has been introduced for fixing XSS (Cross-site scripting) vulnerability in the website. This critical security update helps to prevent your WordPress website from getting hacked by the hackers or any other malicious attack.

WordPress 4.2 named as “Powell” was released on 23 April 2015 and XSS vulnerability issue was found by a security researcher in this release affecting the versions like 4.2, 4.1.2, 4.1.1, 4.1.3 and 3.9.3. This issue enabled an intruder or hacker to inject JavaScript into comments and made the website hack easy. To resolve this XSS vulnerability, the company has responded fast and released WordPress 4.2.1 soon after this vulnerability came to notice.

Jouko Pynnonen, a security researcher, first found XSS vulnerability issue in WordPress website and has described it as follows:-

The attacker execute arbitrary code on the server through plugin or the theme editors under default settings and by triggering logged-in administrator. He can change not only password of the administrator, but also create new accounts. He can also do all the entire activities that can be performed easily by currently logged-in administrator on the target workstation.

WordPress 4.2.1 Security Release is an automatic background update just visit Dashboard > Updates and click on “Update Now”. Enable automatic updates to update your WordPress website automatically. Take the backup of your website before starting the update. For improving the security of your website, upgrade to this latest version of WordPress.

For more details, visit : http://www.phpdevelopmentservices.com/wordpress-web-devel...

Contact
PHPDevelopmentServices
***@phpdevelopmentservices.com
End
Source: » Follow
Email:***@phpdevelopmentservices.com
Tags:WordPress 4.2.1
Industry:Internet
Location:Wilmington - Delaware - United States
Account Email Address Verified     Account Phone Number Verified     Disclaimer     Report Abuse
PHPDevelopmentServices PRs
Trending News
Most Viewed
Top Daily News



Like PRLog?
9K2K1K
Click to Share