On Fri, May 13, 2005 at 11:27:10PM -0700, Steve Langasek wrote:
> > Wordpress developers are not telling anyone what security hole 1.5.1
> > fixes. :/
> Uh, that doesn't suddenly make this a non-bug...

Sorry, I thought if 1.5.1 has been uploaded I could close this bug.

I think it too difficult to do a backport of this security fix. 

07:35 < hendry> Any details on the security issue that 1.5.1 fixes?
07:35 < io_error> hendry: there's an issue where someone can login as you 
without your password
07:35 < io_error> and without swiping your cookies either
07:36 < io_error> update now if you can :)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to