Quote:
Originally Posted by Jeff
Are there any security issues with the current release?
|
Currently, there are no security issues reported on the WordPress site.
However, I just came across a blog post on Perishable Press that talks about an
important security fix for WordPress. The writer explains that if your server crashes, WordPress sometimes display the WordPress Installation Page to your visitors. This can possibly allow hackers to take control of your website.
You will see from the comments that some people think the displayed Installation Page is not a major security risk, while others think it is. What are your views?
I don't think it's a risk I want to take, and therefore we should delete/block/modify the wp-admin/install.php file as suggested by Perishable Press.