--- - branch: pkgsrc-2010Q3 date: Tue Dec 7 12:08:21 UTC 2010 files: - new: 1.11.2.1 old: '1.11' path: pkgsrc/www/wordpress/Makefile pathrev: pkgsrc/www/wordpress/Makefile@1.11.2.1 type: modified - new: 1.6.2.1 old: '1.6' path: pkgsrc/www/wordpress/PLIST pathrev: pkgsrc/www/wordpress/PLIST@1.6.2.1 type: modified - new: 1.7.2.1 old: '1.7' path: pkgsrc/www/wordpress/distinfo pathrev: pkgsrc/www/wordpress/distinfo@1.7.2.1 type: modified id: 20101207T120821Z.c1d9ff28ecc2ce135d7fe40555755988bc1f459b log: "Pullup ticket #3296 - requested by morr\nwww/wordpress: security update\n\nRevisions pulled up:\n- www/wordpress/Makefile\t\t\t1.12\n- www/wordpress/PLIST\t\t\t\t1.7\n- www/wordpress/distinfo\t\t\t1.8\n---\nModule Name:\tpkgsrc\nCommitted By:\tmorr\nDate:\t\tSun Dec 5 16:46:29 UTC 2010\n\nModified Files:\n\tpkgsrc/www/wordpress: Makefile PLIST distinfo\n\nLog Message:\nSecurity update. Changes:\n\n* Fix moderate security issue where a malicious Author-level user could\n gain further access to the site.\n\n* Remove pingback/trackback blogroll whitelisting feature as it can\n \ easily be abused.\n* Fix canonical redirection for permalinks containing %category% with\n nested categories and paging.\n* Fix occasional irrelevant error messages on plugin activation.\n* Minor XSS fixes in request_filesystem_credentials() and when deleting\n a plugin.\n* Clarify the license in the readme\n* Multisite: Fix the delete_user meta capability\n* Multisite: Force current_user_can_for_blog() to run map_meta_cap()\n even for super admins\n* Multisite: Fix ms-files.php content type headers when requesting a\n URL with a query string\n* Multisite: Fix the usage of the SUBDOMAIN_INSTALL constant for\n upgraded WordPress MU installs\n\nWhile here, set license.\n" module: pkgsrc subject: 'CVS commit: [pkgsrc-2010Q3] pkgsrc/www/wordpress' unixtime: '1291723701' user: tron