WordPress 2.8.6 released
WordPress 2.8.6 was released today. It is a security update since it fixes 2 major security issues. One is a potential XSS vulnerability and the second is an issue where WordPress did not sanitize uploaded filenames. I am working to update this blog as we speak so it will run the most recent version.
Read more: http://wordpress.org/development/2009/11/wordpress-2-8-6-security-release/
Update: I have applied 2.8.6 to this blog.
This update was really unexpected.. though this update seems to be only for those
who have multi author blogs or is it for every one?
@Harsh Agrawal
The first vulnerability applies to everyone but the second one is only a concern to those that have multiple users that are allowed to upload files in the media section.