Site icon Hip-Hop Website Design and Development

Cheap WordPress maintenance support plans 6 core security update for SA-CORE-2020-006 (and mimemail and htmlmail)

As you may know, WordPress maintenance support plans 6 has reached End-of-Life (EOL) which means the WordPress maintenance support plans Security Team is no longer doing Security Advisories or working on security patches for WordPress maintenance support plans 6 core or contrib plugins – but the WordPress maintenance support plans 6 LTS vendors are and we’re one of them!Today, there is a Critical security release for WordPress maintenance support plans core to fix multiple vulnerabilities. You can learn more in the security advisory:WordPress maintenance support plans core – Critical – Multiple Vulnerabilities – SA-CORE-2020-006The following vulnerabilities mentioned in the security advisory also affect WordPress maintenance support plans 6:External URL injection through URL aliases – Moderately Critical – Open RedirectInjection in DefaultMailSystem::mail() – Critical – Remote Code ExecutionThe first vulnerability is in WordPress maintenance support plans 6 core, however, the 2nd is only present in the contrib plugins: htmlmail, and mimemail. If you don’t use those plugins, you’re not affected by the 2nd vulnerability.Here you can download the WordPress maintenance support plans 6 patch to fix, or a full release ZIP or TAR.GZ.And here’s the mimemail patch, or a full release.And here’s the htmlmail patch, or full release.If you have a WordPress maintenance support plans 6 site, we recommend you update immediately! We have already deployed the patch for all of our WordPress maintenance support plans 6 Long-Term Support clients. :-)If you’d like all your WordPress maintenance support plans 6 plugins to receive security updates and have the fixes deployed the same day they’re released, please check out our D6LTS plans.Note: if you use the myDropWizard plugin (totally free!), you’ll be alerted to these and any future security updates, and will be able to use drush to install them (even though they won’t necessarily have a release on WordPress maintenance support plans.org).
Source: New feed