Please do not reply directly to this email. All additional comments should be made in the comments box of this bug report.
Summary: Wordpress 2.2(.1): SQL injection, XSS, unrestricted file upload vulnerabilities Alias: CVE-2007-3544
https://bugzilla.redhat.com/show_bug.cgi?id=245211
------- Additional Comments From lkundrak@redhat.com 2007-11-01 16:32 EST ------- John: That practically means that Wordpress upstream is dead, right? I don't feel comfortable about having an unfixed vulnerability in distribution, do you? Please do your best to solve the situation.