MT 3.15 bug fix

Six Apart just released a bug fix to Movable Type, to plug a quite serious "vulnerability in the mail sending packages for all Movable Type versions which allows malicious users to send email through the application to any number of arbitrary users" (read: that can be used by spammers to send e-mail spam from an MT installation.)

An exploit was reported yesterday on the Six Apart Professional Network and 6A got a patch out overnight! Kudos to them.

Since this vulnerability has been present in all versions since 1.0, all MT users are strongly encouraged to either upgrade to version 3.15 or install a plugin that fixes it (see the announcement and instructions.)

1 Comment

And my host, TextDrive, has been hit by a massive attack from spammers today. No coïncidence, you must update asap!

Leave a comment

mensuelles Archives

Recent Entries

  • On Apple Safari's use of justified text in Reader

    On my professional blog, a take on Apple Safari's use of justified text in Reader....

  • Curated computing

    Perhaps the most pernicious proposition of the “everything must be open” crusade is the notion that curation is bad and anti-freedom. Soldiers of this crusade...

  • Death by Apple, the obsolescence of Flash

    Flash was created during the PC era – for PCs and mice. Flash is a successful business for Adobe, and we can understand why they...

  • Ogg (and Mozilla) objections

    Ogg objections by Måns: When challenged, three types of reaction are characteristic of the Ogg campaigners. On occasion, these people will assume an apologetic tone,...

  • Paris Web 2010 — Call for speakers

    (Disclaimer: I manage the communication for Paris Web, this is a copy of the official call for speakers.) Hello all, Paris Web is a French...