Warning: WordPress.org announced a “security release” today for core WordPress files, Version 3.6.1.
According to WordPress a “security release” fixes potential holes in the
software that hackers could use to exploit your site.This means, you
should update right away.
Therefore Connectikpeople recommends you to update to the latest version of
a security release (that’s plugins, themes, and of course the core files).
According the WordPress News blog, the release fixes the
following three issues:- Block unsafe PHP unserialization that could occur in limited situations and setups, which can lead to remote code execution.
- Prevent a user with an Author role, using a specially crafted request, from being able to create a post “written by” another user.
- Fix insufficient input validation that could result in redirecting or leading a user to another website.