On Fri, May 13, 2005 at 11:27:10PM -0700, Steve Langasek wrote: > > Wordpress developers are not telling anyone what security hole 1.5.1 > > fixes. :/ > Uh, that doesn't suddenly make this a non-bug...
Sorry, I thought if 1.5.1 has been uploaded I could close this bug. I think it too difficult to do a backport of this security fix. 07:35 < hendry> Any details on the security issue that 1.5.1 fixes? 07:35 < io_error> hendry: there's an issue where someone can login as you without your password 07:35 < io_error> and without swiping your cookies either 07:36 < io_error> update now if you can :) -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]