<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Arren Tan &#187; exploit</title>
	<atom:link href="http://arrentan.com/tag/exploit/feed/" rel="self" type="application/rss+xml" />
	<link>http://arrentan.com</link>
	<description></description>
	<lastBuildDate>Sun, 09 Oct 2011 03:45:28 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>WordPress 2.8.6 is released!!!</title>
		<link>http://arrentan.com/2009/11/wordpress-2-8-6-is-released/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=wordpress-2-8-6-is-released</link>
		<comments>http://arrentan.com/2009/11/wordpress-2-8-6-is-released/#comments</comments>
		<pubDate>Fri, 13 Nov 2009 08:01:39 +0000</pubDate>
		<dc:creator>Arren</dc:creator>
				<category><![CDATA[WordPress]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[multiuser]]></category>
		<category><![CDATA[security update]]></category>

		<guid isPermaLink="false">http://arrentan.com/?p=586</guid>
		<description><![CDATA[2.8.6 fixes two security problems that can be exploited by registered, logged in users who have posting privileges.  If you have untrusted authors on your blog, upgrading to 2.8.6 is recommended. The first problem is an XSS vulnerability in Press This discovered by Benjamin Flesch.  The second problem, discovered by Dawid Golunski, is an issue <a href="http://arrentan.com/2009/11/wordpress-2-8-6-is-released/"> read more <span class="meta-nav">&#187;</span></a>]]></description>
			<content:encoded><![CDATA[<p>2.8.6 fixes two security problems that can be exploited by registered, logged in users who have posting privileges.  If you have untrusted authors on your blog, upgrading to 2.8.6 is recommended.</p>
<p>The first problem is an XSS vulnerability in Press This discovered by Benjamin Flesch.  The second problem, discovered by Dawid Golunski, is an issue with sanitizing uploaded file names that can be exploited in certain Apache configurations. Thanks to Benjamin and Dawid for finding and reporting these.</p>
<p><a href="http://wordpress.org/development/2009/11/wordpress-2-8-6-security-release/" target="_blank">http://wordpress.org/development/2009/11/wordpress-2-8-6-security-release/</a></p>
]]></content:encoded>
			<wfw:commentRss>http://arrentan.com/2009/11/wordpress-2-8-6-is-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

