It seems that the WordPress developers have a thing for releasing a new version of WordPress shortly before I’m going to bed. Whenever they do it means that I have to stay away to find out if it fixes security vulnerabilities. If it does, I update all of my blogs immediately. Instead of going to bed, I’m spending between one and two hours updating the sites. Not that pleasant.
WordPress 3.1.4. has just been released and the developers refer to it as a security and maintenance upgrade. The new version fixes one known vulnerability that “could allow a malicious Editor-level user to gain further access to the siteâ€. If you are running a single author blog you are safe from this.
I’d still recommend to update the blog as soon as possible because of security hardening additions to the blogging platform.
The update is as usually available as a direct download, install and update from within the WordPress admin interface, and as a separate download from the official WordPress website. I have updated a total of five blogs so far – including Ghacks Technology News – and encountered no problems or issues after the update. While it may be to early to tell, it is relatively safe to say that the update won’t break the blog.
WordPress admins who are interested in all changes in the WordPress 3.1.4 release find them listed on WordPress trac.
The developers have furthermore released the third and final release candidate of WordPress 3.2 which will be released in the near future. While I would not suggest to update a public blog to that version yet, it is clear that it won’t be long until the final version is released. Likely again before my bedtime.
You find additional information about the features and changes in WordPress 3.2 on the official beta announcement post over at the WordPress website.
Have you updated your blogs yet? If so, have you encountered any issues with this update?
Related Articles:
WordPress 3.1.2 Released, Security Update
WordPress Broken Link Checker
Do more with your WordPress using the function reference
Free Anti Spam Plugin Antispam Bee For WordPress
Add Thumbnails To Your WordPress Blog
Enjoyed the article?: Then sign-up for our free newsletter or RSS feed to kick off your day with the latest technology news and tips, or share the article
with your friends and contacts on Facebook or Twitter.
Support Us On Facebook, Twitter and Google:
— Click on the following link(s) to read more about Web Development
Responses so far:
Leave a Reply  Follow Ghacks  Subscribe To Comment Rss
Article source: http://www.ghacks.net/2011/06/30/wordpress-3-1-4-security-update-released/
If we dont use an editor role would you still suggest updating for security purposes? I try to run a fairly secure site and would welcome any upgrades in that dept, however I dont use the editor role sooooo…..what a hassle to update for nothing….
Bryan, I would update for the security hardening alone.
Hey Martin, out of curiosity, do you have any sort of method you use to streamline the updating of your several WordPress sites? I’m starting to manage several myself and just was wondering if you have any tips for managing several WordPress installations?
Other than keeping track of all blogs and having a directory in my bookmarks that point straight to their admin interfaces? No, nothing. It would obviously very comfortable to push the update to all blogs at once, but this gives me less control over the update. Last night one of the updates failed and I had to re-upload all files manually. I do not know of a solution that can push updates if the sites are hosted on multiple servers.