Path to this page:
Next | Query returned 1 messages, browsing 1 to 10 | previous
CVS Commit History:
2018-07-16 16:04:22 by Benny Siegert | Files touched by this commit (2) | |
Log message:
Pullup ticket #5786 - requested by taca
www/wordpress: security fix
Revisions pulled up:
- www/wordpress/Makefile 1.79-1.80
- www/wordpress/distinfo 1.64
---
Module Name: pkgsrc
Committed By: jperkin
Date: Wed Jul 4 13:40:45 UTC 2018
Modified Files:
pkgsrc/www/wordpress: Makefile
Log message:
*: Move SUBST_STAGE from post-patch to pre-configure
Performing substitutions during post-patch breaks tools such as mkpatches,
making it very difficult to regenerate correct patches after making changes,
and often leading to substituted string replacements being committed.
---
Module Name: pkgsrc
Committed By: wen
Date: Sat Jul 7 02:55:25 UTC 2018
Modified Files:
pkgsrc/www/wordpress: Makefile distinfo
Log message:
Update to 4.9.7
Upstream changes:
WordPress 4.9.7 is now available. This is a security and maintenance release \
for all versions since WordPress 3.7. We strongly encourage you to update your \
sites immediately.
WordPress versions 4.9.6 and earlier are affected by a media issue that could \
potentially allow a user with certain capabilities to attempt to delete files \
outside the uploads directory.
Thank you to Slavco for reporting the original issue and Matt Barry for \
reporting related issues.
Seventeen other bugs were fixed in WordPress 4.9.7. Particularly of note were:
Taxonomy: Improve cache handling for term queries.
Posts, Post Types: Clear post password cookie when logging out.
Widgets: Allow basic HTML tags in sidebar descriptions on Widgets admin \
screen.
Community Events Dashboard: Always show the nearest WordCamp if one is \
coming up, even if there are multiple Meetups happening first.
Privacy: Make sure default privacy policy content does not cause a fatal \
error when flushing rewrite rules outside of the admin context.
|
Next | Query returned 1 messages, browsing 1 to 10 | previous