Showing posts with label wordpress. Show all posts
Showing posts with label wordpress. Show all posts

Thursday, May 27, 2021

Collecting Community Feedback: New Improvements and Features in Bitnami Helm Charts

So far this year, the Bitnami Content team has merged more than 700 Pull Requests (PR) in our Helm charts GitHub repository. About half of those PRs are mainly external contributions to the most popular solution, the Bitnami WordPress Helm chart.  

The community actively contributes to the Bitnami’s Helm chart catalog improvement by suggesting new features and reporting issues. This is not the first time that we can say how proud we are of our community, since some of our users also contributed in the past by submitting their own Helm charts.   

Meanwhile, the Bitnami Content Team continuing checking both the PRs and issues submitted by users to identify which are the problems they are dealing with and how we can enhance the user experience and providing the most up to date and secure versions of the community’s favorite applications.  

Find below the list of the latest improvements done in our Helm charts catalog. And don’t forget to check Bitnami documentation and visit our Tutorials site to boost your Kubernetes skills! 


Latest Bitnami Helm Charts New Features and Improvements 


WordPress 


Elasticsearch and Kibana

  • New feature: Both Elasticsearch and Kibana license changes. Both are now licensed under the Elastic License. X-Pack is also now included by default on both Elasticsearch and Kibana 
  • Chart version: 15.0.0 (Elasticsearch) and 8.0.0 (Kibana) 
  • More info: Elasticsearch / Kibana 
  • Deployment offering


MinIO 


Etcd 

InfluxDB 

Visit the Bitnami Helm chart repository in GitHub for more information about our charts’ latest versions and improvements or navigate to the Bitnami Application Catalog for deploying the solution of your choice in any Kubernetes platform.  

Tuesday, February 25, 2020

Get WordPress Bundles for the Google Cloud Platform Through Bitnami

Originally published on the Jetpack Blog


In August, developers’ lives got a lot easier when official WordPress images certified by Bitnami and Automattic became available on Amazon Web Services.

Now, you can also find official WordPress images on the Google Cloud Platform (GCP)! Automattic (the folks behind Jetpack, WordPress.com, WooCommerce, and more) partnered with Bitnami to provide a straightforward, secure way to use WordPress and Jetpack on GCP.






From the moment you click the Launch on Compute Engine button, you can focus on your website content without worrying about how to package and launch your new site on the Google Cloud Platform server. And the WordPress images are free to launch — you’ll only need to pay Google to host your application once it’s deployed on the Google Cloud Console.
What's in the box?

To give you a head start with site-building, the image has the popular Jetpack and AMP plugins pre-installed.

Jetpack is Automattic’s all-in-one solution for WordPress. It replaces dozens of plugins with a single solution that gives you rock-solid site performance, security, and customization tools, including: 

See the full list of features at Jetpack.com.

Accelerated Mobile Pages (AMP) is an essential tool for building rich, fast websites that work great on mobile devices. Previously, AMP mode would leave out features and styles, but the AMP plugin for WordPress converts all your content to AMP markup automatically. Other highlights include:
  • Core theme support that works with all WordPress core themes from Twenty Ten to Twenty Twenty.
  • A compatibility tool for detailed debugging information for validation errors.
  • CSS tree-shaking that automatically removes the majority of unused CSS to bring your files below AMP’s 50KB limit for CSS.


Pick the WordPress image that works for you


Bitnami provides a range of cloud images for different needs. To launch an image, click the link then select Launch on Compute Engine. A WordPress server will be running on your console in minutes! Choose from:

Find out which WordPress image best matches your WordPress use case.

Not sure where to start? Follow this step-by-step guide! If you’re stuck or have questions about launching WordPress on Google Cloud Platform, check out Bitnami’s documentation for WordPress or visit the Community Support Forum.

Thursday, August 1, 2019

Take Your Website to the Next Level with WordPress Production-Ready from Bitnami and Automattic - Now Available on the AWS Marketplace


Webinar - " Achieve Your Website Goals with the Official WordPress Image for the Cloud" - August 14th at 10 am PST - Register Now
_________________________________________________________________________________

On January 16, 2019, we announced our partnership with Automattic, the company behind WordPress.com, to create an official WordPress image for the AWS cloud.

Today, all of the different flavors of Bitnami WordPress images in the AWS Marketplace have been re-published as official images certified by Bitnami and Automattic.

Along with updating our images, we have also released a new Production-Ready WordPress image that is designed to handle all of your production environment needs.

WordPress Production-Ready is a pre-configured CloudFormation template designed for production environments. Its architecture spans two availability zones in the AWS region and auto-scaling group configured in each node to ensure high-availability and horizontal scaling.

Maximum performance is maintained by a replication model for distributing workloads across multiple WordPress instances, Elastic Load Balancing to distribute requests across the nodes, EFS for persisting files and ElastiCache cluster with Memcached for caching database queries to Amazon Aurora.

With WordPress Production-Ready Certified by Bitnami and Automattic, your company can rest assured that the application will withstand the traffic and scaling required for your popular site with the following features:

  • High-availability architecture with two availability zones and auto-scaling group configured in each node to ensure dynamic horizontal scaling.
  • Public subnets configured to allow EC2 Instances to act as bastion hosts for inbound traffic and Managed NAT Gateways allow outbound traffic to WordPress instances, following the AWS security guidelines.
  • Always up-to-date and secure; includes the latest available version of WordPress, PHP, and Apache.

Get started with the WordPress Production-Ready Certified by Bitnami and Automattic today!

Is there anything else new in the updated WordPress listings by Bitnami and Automattic?

Yes, there is!

All of our WordPress images for AWS now include the Automattic Jetpack plugin by default.

Jetpack, one of the most popular plugins for WordPress, is the most powerful way to design, protect, and manage multiple WordPress websites. Jetpack is powered by the folks behind WordPress.com, which means you’ve got the infrastructure to handle billions of pageviews behind your sites, plus world-class 24/7 support.

Pick the WordPress image that works for you:

We offer many different WordPress images to suit the many different needs of our users. Pick the one that works best for you, and get started today.


Unsure of which image to choose for your WordPress use case? Reach out to our support team through our community support forum with the details of what you are trying to accomplish. Our team will be happy to guide you in the right direction!

Want to learn more about how you can use the WordPress Production-Ready Certified by Bitnami and Automattic to create the website of your dreams on AWS? Join us for a live webinar with the Automattic and AWS teams on August 14th at 10 am PST. Register now

Thursday, February 21, 2019

Remote Code Execution Vulnerability in WordPress

A remote code execution vulnerability in the WordPress core has recently been found. The vulnerability affects all WordPress versions prior to 5.0.3.

This vulnerability has been present for over 6 years and can be exploited by an attacker with at least "author" privileges. More information about the vulnerability can be found in the announcement.

A fix that completely addresses this vulnerability will be included in the next WordPress release. In the meantime, we have released Bitnami WordPress 5.0.3 (and Multisite version) installers, virtual machines and cloud images for all platforms. We have also released updated WordPress containers and Helm Charts for Kubernetes.

Have questions about Bitnami WordPress or the security issue? Post to our community forum, and we would be happy to help you.

Wednesday, January 16, 2019

Automattic, the Expert Behind WordPress, Partners with Bitnami to Bring the Official WordPress Image to AWS Marketplace

Authored by Kevin Franklin, Director of Business Development

WordPress powers 33% of the internet. With over 45,000 themes and plugins, it is the world’s most popular content management system.

Every month, WordPress certified and published by Bitnami on AWS is launched tens of thousands of times. When a user launches an application certified by Bitnami, they are confidently launching the most up-to-date and secure version of the application. Bitnami’s expertise in packaging reliable, secure solutions means they will have the best possible WordPress user experience available on any cloud marketplace.

We are delighted to announce that Automattic, the expert in WordPress and creator of WordPress.com, has partnered with Bitnami to provide the official WordPress image to the AWS Marketplace. The Official WordPress image, “WordPress Certified by Bitnami and Automattic,” is now available on AWS Marketplace.

This new marketplace listing includes the Jetpack plugin giving users access to additional professional themes, performance improvements, scanning, site activity and marketing tools. The listing also includes the new Gutenberg editor.

WordPress Certified by Bitnami and Automattic is the first step in supporting WordPress in the AWS Marketplace. Soon, you’ll see tutorials, webinars and other materials to help you get even more out of your WordPress implementation.

Stay tuned for more updates about this partnership by following us on twitter or LinkedIn!

Official WordPress listing on AWS Marketplace

Thursday, December 13, 2018

WordPress 5.0.1 Security Release

The WordPress security group just released 5.0.1 version. This is a security release for all versions since WordPress 3.7. It is strongly recommended to update your sites immediately.

The WordPress security team tried to mitigate all vulnerabilities without any back-compat breaks, but unfortunately there were a few cases where that was not possible. Plugin authors are encouraged to read the 5.0.1 developer notes for information on backwards-compatibility.

We have released Bitnami WordPress 5.0.1 (and Multisite version) installers, virtual machines and cloud images for all platforms as well as the WordPress containers and Helm Charts to deploy this version in Kubernetes.

WordPress already supports the auto-upgrade functionality. For minor versions like the current one, an already existing WordPress 5.0 has been automatically updated. If that was not the case, you can follow our docs for upgrading your WordPress installation.

Have questions about Bitnami WordPress or the security issue? Post to our community forum, and we would be happy to help you.

Friday, December 7, 2018

WordPress 5.0 is Now Available on Bitnami

WordPress, the most popular open source CMS, has just announced the biggest release of the year with WordPress 5.0. And now, it is available in the Bitnami catalog.

You can deploy Bitnami WordPress 5.0 in just a few clicks:
And for the most demanding environments, you can also try Bitnami WordPress Multi-Tier which separates the application code from the database. It is available on Google Cloud Platform, Azure or AWS.

So, what's new in WordPress 5.0?

WordPress offers now a new content creator/editor called Gutenberg. This new core block builder will change how WordPress works, and replace the existing classic editor. Gutenberg will make the content writing and editing process more modern and faster. Create blocks, drag and drop elements, and adding media files is now easier than ever.


New Gutenberg WordPress Editor

WordPress 5.0 also includes the new minimal Twenty Nineteen theme, with full front and back-end Gutenberg support.

This release also includes other features like security updates, front-end editor improvements, mobile optimization and much more.

Twenty Nineteen WordPress theme

Get started with the new version of WordPress today! If you have any questions about how to update your Bitnami WordPress, check out our step-by-step guide or reach out to us on the community support forum. We'd be happy to help you! 

Thursday, November 16, 2017

WordPress 4.9 is now available on Bitnami

WordPress, the most popular open source CMS has just released the “best release ever” in their own words (188 enhancements and new features has been added). And now, WordPress 4.9 is available in the Bitnami catalogue. 



Here are some of the most remarkable new features and enhancements included in this WordPress version:

New widgets and improvements

In addition to the new media widgets included in the prior version, version 4.9 also includes a Gallery widget for adding galleries both in the post content and in the sidebar.


New Gallery widget for post content and sidebar


We can highlight that this new version (at last!) support shortcodes in the text widget. The theme switching has also been enhanced.

Improvements for customizing sites

WordPress has improved the experience of discover, install and preview new themes on the customizer. The Nav Menu side has been also upgraded: a more clear menu panel that facilitates adding a new menu to the desired location.

Changes on the Nav Menu based on user experience tests


Code with more security and reliability 

WordPress has reintroduced syntax highlighting and includes linting and auto-completion by incorporating the CodeMirror library. Apart from this, the Additional CSS Integration also incorporates the detention of syntax errors.

CodeMirror supports linting to detect errors in your code


This new version has a bunch of updates that you can’t miss.  New interesting changes for developers in WordPress Multisite (which is also available in the Bitnami catalogue) or new capabilities for plugins and language files amongst others, are waiting for you.

You can deploy Bitnami WordPress 4.9 in just a few clicks:



And for the most demanding environments, you can also try Bitnami WordPress Multi-Tier which separates the application code from the database. It is available on Google Cloud Platform, Azure or AWS.

Thursday, May 4, 2017

WordPress security issue: Unauthenticated Remote Code Execution (RCE)

A critical security WordPress vulnerability was recently published. The Remote Code Execution PoC exploit described in this advisory is based on version 4.6. However, other versions of WordPress prior to 4.7.1 may also be affected.

The WordPress team strongly encourages their users to update their Wordpress site(s) to the most recent version: 4.7.4.  If you already have a running version of Bitnami WordPress, the application can be updated from the admin panel. Note that the Automatic Background Upgrades functionality is enabled by default but upgrading from 4.6.x to 4.7.y is not automatic. You can confirm that the update has been done by checking the version from within your admin panel.

We have released Bitnami WordPress 4.7.4 (and Multisite version) installers, virtual machines and cloud images for all platforms.

Have questions about Bitnami WordPress or the security issue? Post to our Community Forum, and we would be happy to help you.

Tuesday, March 7, 2017

Security release: WordPress 4.7.3

WordPress has released a new version that fixes six security vulnerabilities.

It is recommended that you update your WordPress application to the latest version, Wordpress 4.7.3. You can follow our documentation to learn how to upgrade your application and ensure its security.

For new application deployments, Bitnami has released WordPress 4.7.3 containers, installers, virtual machines and cloud images that address these vulnerabilities. If you deploy Bitnami WordPress via a Bitnami Launchpad, your application will be up-to-date and secure. If you deploy Bitnami WordPress via one of our cloud partner marketplaces and it is not yet updated to version 4.7.3, you will need to upgrade your application using the documentation linked above.

If you have further questions about Bitnami WordPress or this security issue, please post to our community forum, and we will be happy to help you.

Friday, January 27, 2017

Security Release: WordPress 4.7.2

WordPress has released a new version that fixes three security vulnerabilities.

It is strongly recommended that you update your WordPress application to the latest version, Wordpress 4.7.2. You can follow our documentation to learn how to upgrade your application and ensure its security.

For new application deployments, Bitnami has released WordPress 4.7.2 containers, installers and virtual machines that address these vulnerabilities. If you deploy Bitnami WordPress via a Bitnami Launchpad, your application will be up-to-date and secure. If you deploy Bitnami WordPress via one of our cloud partner marketplaces and it is not yet updated to version 4.7.2, you will need to upgrade your application using the documentation linked above.

If you have further questions about Bitnami WordPress or this security issue, please post to our community forum, and we will be happy to help you.

Friday, December 9, 2016

WordPress 4.7 “Vaughan” ‒ Now Available from Bitnami

Version 4.7 of WordPress, named “Vaughan” in honor of legendary jazz vocalist Sarah “Sassy” Vaughan, is now available from Bitnami. If you are already using a Bitnami WordPress image, you can simply upgrade your version from your WordPress admin panel.

Not familiar with Bitnami WordPress? In short, it is the easiest way to install your own WordPress instance. We've packaged WordPress as a self-contained and incredibly fast distribution that is simple to deploy. To get started with Bitnami WordPress, you can download our ready-to-run installers for Linux, Windows and Mac OS X, or our virtual machine images (VMs) and container for the application. If you want a hosted WordPress application, you can deploy Bitnami Wordpress into the cloud with one of our several cloud partners.

What's new in WordPress 4.7?

There are a significant number of new features in this WordPress version, including:

  • Twenty Seventeen theme: This yearly update of WordPress's native theme focuses on business sites and features a customizable front page with multiple sections. 
  • New additions to the application appearance customizer that take you through the initial setup of a theme, with non-destructive live previews of all your changes in one uninterrupted workflow.
  • New tools to manage your document collection; uploading PDFs will generate thumbnail images so you can more easily distinguish between all your documents.
  • REST API endpoints for posts, comments, terms, users, meta, and settings.
Get started with new a WordPress application easily by deploying a Bitnami WordPress stack. If you have questions about Bitnami WordPress, please post to our community forum, and we will be happy to help you.

Tuesday, November 29, 2016

Bitnami Releases Two Amazon RDS Offerings!

Bitnami, one of the leading providers of open source software in the AWS Marketplace, is excited to announce two new offerings using Amazon Relational Database Service (RDS), Wordpress Multi-Tier with Amazon RDS for MariaDB and Redmine Multi-Tier with Amazon RDS for MariaDB. Wordpress, a popular Content Management System (CMS) and Redmine, a flexible and richly configurable project management platform, are excellent additions to any business’ needs in the cloud. 

Amazon Relational Database Service (Amazon RDS) makes it easy to set up, operate, and scale a relational database in the cloud. It provides cost-efficient and resizable capacity while managing time-consuming database administration tasks, freeing you up to focus on your applications and business.  With Amazon RDS, you can deploy a scalable MariaDB database, a popular open source relational database created by the original developers of MySQL.



Tighter integration with Amazon’s managed database offering in the cloud allows customers to take advantage of that same value with the expertise of Amazon Web Services managing the infrastructure for critical data in the cloud. These two new offerings use Amazon CloudFormation Templates created by Bitnami to orchestrate the application’s resources for the deployment. Users will be able to configure architecture suited to their needs and launch an environment into their AWS Account. All of the data required to get up and running will be pre-populated and ready for use upon deployment. 

Bitnami’s applications are trusted for their ability to provide the most up-to-date and patched versions of popular open source applications, consistently and expediently after release.  Using Bitnami’s Cloud Formation Templates allows customers to receive all of these Bitnami benefits while also being able to have an environment that incorporates the scalability and ease of use of Cloud Formation Templates.

Bitnami is excited to deepen our partnership with Amazon Web Services and our customers through the AWS Marketplace. We look forward to continuing to provide more value for our users and receiving your feedback on these applications. Please reach out to us directly if you have any requests or would like to see your applications available with Amazon RDS. You can reach out to us at enterprise@bitnami.com.

Tuesday, May 10, 2016

Security Release: WordPress 4.5.2

The WordPress project has just released a new version due to two security vulnerabilities:
  • WordPress versions 4.5.1 and earlier are affected by a SOME vulnerability through Plupload, the third-party library WordPress uses for uploading files. 
  • WordPress versions 4.2 through 4.5.1 are vulnerable to reflected XSS using specially crafted URIs through MediaElement.js, the third-party library used for media players.
The WordPress team strongly encourages their users to update their site to version 4.5.2. For more details please check the official announcement. Bitnami users who are already running a version of Bitnami WordPress will not be affected, as their application will be automatically updated. If you are using Bitnami WordPress, you can confirm that the update has been done by checking the version from your admin panel.

We have released Bitnami WordPress 4.5.2 (and Multisite version) installers, virtual machines and cloud images that fix these issues.

Do you have questions about Bitnami WordPress or the security issue? Post to our community forum, and we will be happy to help you.

WordPress Stack with PHP7

WordPress announced a few months ago that it is fully compatible with the latest version of the PHP framework, PHP7. Nowadays most of the popular plugins are already compatible and WordPress has also published a developer guide about how to update WordPress plugins to support PHP7.

Here, at Bitnami, we baked a new WordPress stack based on PHP7 to help you run the latest, shiniest and fastest software. WordPress + PHP7 is faster than ever before.

But that's not all. If you still want to run WordPress on PHP 5.6, now you can. Use the Bitnami LAMP Stack and install the WordPress module on it, or use the WordPress Legacy Stack. The WordPress Legacy Stack will have the same and latest version of WordPress but will ship with PHP 5.6

Both new WordPress versions are available as installers, virtual machines, and cloud images on the Bitnami WordPress Stack page.

If you have questions about Bitnami WordPress or the advantages of using PHP7 over PHP5.6, please post to our community forum, and we will be happy to help you.

Wednesday, April 13, 2016

WordPress 4.5 "Coleman" now available from Bitnami!


We're happy to announce a new version of Bitnami Wordpress Stack:

WordPress is a popular blogging software and powers more than 10% of all websites globally. Developed by Automattic, WordPress rose to popularity quickly because of it’s up-to-date development framework, extensive feature set, multilingual publishing ability, multi-author support, and thriving community. Thousands of free and commercial themes and plugins are available to extend and personalize WordPress for just about anyone who needs a website.

A few of the major changes in this new version include:
  • Finer points: Customizer improvement
  • Finer points: Visual Editor improvement
  • Finer points: Comment refinement
  • Finer points: Optimization of image generation
  • Developers: Selective refresh
  • 
Developers: Backbone and underscore update

  • Developers: Embed templates 
  • Developers: Term edit page changes 


What's new?
  • Posts: Inline link editing

  • Posts: Additional editor shortcuts
  • 
Comments: Moderate comment screen refresh

  • Comments: Max length for comment form fields
  • 
Comments: Comment error page navigation

  • Appearance: Responsive preview of your site

  • Appearance: Theme logo support
  • 
Appearance: Selective refresh

  • Appearance: Easy of use


Under the hood:
  • Bug fix: Support Windows shares/DFS roots in wp_normalize_path()
  • Bug fix: OPTIONS request to REST API does not return correct Accept header
  • Smart Image resizing
  • JavaScript library updates
  • Script Loader improvements
You can learn more information about this release in the WordPress blog.

With Bitnami, you can deploy a ready-to-run Wordpress Stack with just one click. To get started, choose from our all-in-one free native installers (for Linux, Windows and Mac OS X), virtual machines and Cloud Images for Amazon EC2, Azure, CenturyLink, Digital Ocean, Google Cloud Platform, vCloud Air and 1&1 Cloud Platform.


Thursday, February 4, 2016

WordPress 4.4.2-0 Security Release

                                                 
WordPress has just released a new version that resolves two security issues.

Version 4.4.2 addresses a possible SSRF for certain local URIs and an open redirection attack.

If you want to read more about these issues, you can check out the WordPress release news for the 4.4.2 version here.

Apart from the security issues mentioned, WordPress 4.4.2 also fixes several bugs from versions 4.4 and 4.4.1. For further information please check the list of changes.

WordPress has the auto-upgrade functionality enabled, so your previous version of Bitnami should be automatically updated.

We have released new versions of Bitnami WordPress installers, virtual machines and Amazon EC2, Google, Oracle, VMware vCloud Air, DigitalOcean and Azure cloud images that fix these issues.

Have questions about Bitnami WordPress or the security issue? Post to our community forum, and we would be happy to help you.

Tuesday, September 22, 2015

Add X-Cart’s Powerful eCommerce Engine to WordPress

WordPress is a powerful blogging and content management platform that drives almost 24% of the internet’s top 10 million websites. Every month, an estimated 53.6 million new posts appear on WordPress-based sites. Many Wordpress users are looking for an efficient tool to make money from their websites. Several options exist: joining affiliate programs, embedding ads, opening an online store to sell physical goods or distribute the digital contents they produce.

There are plenty of tools to add an online store feature to your existing website that vary in simplicity of use, ease of setup, and price. But the abundance of existing tools is not an obstacle for developers of new ones, who frequently roll out even more convenient, powerful, and easy-to-use tools with which they hope to carve out their own piece of the pie.

The creators of X-Cart, one of the leading ecommerce platforms in the world, have introduced an exciting new opportunity for operators of the millions of Wordpress websites worldwide. Just like Wordpress, X-Cart works on a powerful bundle of MySQL and PHP, is very flexible, can be easily edited, and loves customization. All these similarities make these two engines a great combination for integration together, and X-Cart’s engineers have made it easy to do just that.

X-Cart widgets inside your existing website 

X-Cart’s new integration module helps you build ecommerce blocks into your existing WordPress-based website. In other words, you can show either a category with a list of products or a detailed product page, and a minicart widget. Your visitors can not only browse the goods, but also add them to cart and place the order.

In addition to showing the blocks inside the blog entries themselves, you may display a side menu with categories and with search by products in your X-Cart store.

User-friendly management

Adding X-Cart blocks does not require any programming skills. You just create a new post, as usual, and insert a string like this:

[xcart widget='categorymenu'][xcart widget='productgrid' category_id='2' grid_size='5']

You do not even need to think of a correct string format: it’s copied from the corresponding page in X-Cart (category or product management in X-Cart admin back end).

At the same time, the X-Cart store itself may be available at an independent URL with its’ own independent traffic.

What you need to start:

We have easy-to-install Bitnami stacks for both X-Cart and Wordpress, and all you need is to mutually connect them. By the way, downloading and installing X-Cart in September, you automatically participate in Apple Watch prize drawing!

Wednesday, September 16, 2015

Wordpress 4.3.1 Security Release

The WordPress project has just released a new version due to a security release. WordPress version 4.3.1 fixes important security issues, aa cross-site scripting vulnerability when processing shortcode tags and another one in the user list table.

It also includes a patch for an issue that let users without proper permissions publish private posts and make them sticky.

The WordPress team strongly encourages their users to update their site to this version. For more details please check the official announcementIf you already have a running version of Bitnami WordPress, the application will be automatically updated. You can confirm that the update has been done by checking the version from your admin panel.

We have released Bitnami WordPress 4.3.1 (and Multisite version) installersvirtual machines and Amazon EC2GoogleVMware vCloud Air and Azure cloud images that fix these issues.

Have questions about Bitnami WordPress or the security issue? Post to our community forum, and we would be happy to help you.

Tuesday, August 4, 2015

Security Release: WordPress 4.2.4

The WordPress project has just released a new version due to a security release. WordPress versions 4.2.3 and earlier are affected by six issues, including three cross-site scripting vulnerabilities and a potential SQL injection that could be used to compromise a site. 

It also includes a fix for a potential timing side-channel attack and prevents an attacker from locking a post from being edited.

In addition to the security fixes, WordPress 4.2.4 contains fixes for 4 bugs from 4.2.3. You can find more information at the Release Notes.

The WordPress team strongly encourages their users to update their site to this version. For more details please check the official announcementIf you already have a running version of Bitnami WordPress, the application will be automatically updated. You can confirm that the update has been done by checking the version from your admin panel.

We have released Bitnami WordPress 4.2.4 (and Multisite version) installersvirtual machines and Amazon EC2GoogleVMware vCloud Air and Azure cloud images that fix these issues.

Have questions about Bitnami WordPress or the security issue? Post to our community forum, and we would be happy to help you.