Install WordPress 2.6.3

Apparently, a security flaw has been found in the Snoopy library that WordPress uses. This has made the WordPress team put out a new release, WordPress 2.6.3. According to their blog post, you only have to change that class and the file holding the version number, but an astute developer on the WordPress developer mailing list noticed that they'd slipped one other minor fix in to. So to upgrade to 2.6.3, all you have to do is download these 3 files from wordpress.org:

  1. wp-includes/class-snoopy.php
  2. wp-includes/version.php
  3. wp-admin/includes/media.php

And overwrite them in their appropriate directories. Make very sure that you're not overwriting the wp-includes/media.php but the one in wp-admin/includes/media.php.

Probably one of the easiest WordPress upgrades you've ever had in your life. It should be noted that I use the Snoopy library in several of my plugins, so you'd better upgrade!

15 Responses to “Install WordPress 2.6.3”

  1. Joost, what if I am running 2.6.1, can i still replace those files?

  2. Two files serving on official Wordpress blog post. But you are offering three file for upgrade to 2.6.3.

    What's different from old media.php to new one?

    Thanks.

  3. What kind of security flaw ?

  4. Dunnow, check the WP post.

  5. Just like Fatihturan said: there are officially only two upgraded files, not media.php. There'se nothing mentioned about it on the WP-site.

  6. be stubborn if you wish, I bet you know better than the developers on wp-hackers :-)

  7. Hé Joost, I'm just a blogger, not a developper or IT'er. ;-)

  8. Hé, I updated media.php and now my blog is broken! No, just kidding. :-) Everything is just fine. Thanx for your info!

  9. After all the hassles I had with WPAU, I've now just realised that there was only 3 files to replace...

    Live and learn I guess.

  10. Bedankt, dat was super simpel!

  11. If anyone uses localized versions of WordPress (for example, I use ru.wordpress.org distribution), make sure you download those files for your localized version. I'm not sure why, but when I upgraded my (localized) WordPress by replacing two files from the main distribution, my Dashboard was empty.

  12. Glad I found this before doing a larger upgrade.

    Easily done!

icon

Want an avatar too?

Go to gravatar.com and upload your preferred avatar.

You can use: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong> <pre lang="" line="" escaped="">

11 Trackbacks to “Install WordPress 2.6.3”

  1. Latest Wordpress Update 2.6.3 | johnvickers.ca - Sat, October 25th, 2008 at 00:09
  2. marshalsandler.com » Daniel Dura » Moderator - Sat, October 25th, 2008 at 16:50
  3. Install WordPress 2.6.3 | The Affiliate Desk - Sat, November 15th, 2008 at 16:21