WordPress Cluster 6.24.9

  • Must Use Plugins Updated
    • WordPress Cluster 3.7.0
      • new function wpc_setcookie() to set secure cookies by default
    • MPP 1.2.0
      • secured cookie
    • Sailthru 1.2.2
      • secured cookie

PR: https://github.com/dc-thomson/wordpress/pull/1289

DCT Careers 1.2.0

  • Fixed security issues
    • Removed commenting.
    • Removed sidebar.
    • Removed links to insecure scripts that no longer exists
    • Escaped gallery classes

PR:  https://github.com/dc-thomson/wordpress/pull/1206

WordPress Cluster 6.10.2 – Security Release

  • Upgraded to WordPress 4.9.2;
    • Security
      • An XSS vulnerability discovered in the Flash fallback in the MediaElement
      • The fallback has been removed.
    • Fixes
      • JavaScript errors preventing Firefox browser saving a post.
      • The previous taxonomy-agnostic behavior of get_category_link() and category_description() was restored.
        Switching themes will now attempt to restore previous widget assignments, even when there are no sidebars to map.
      • Use MySQLi when available by default.
      • Update random_compat external library for PHP 7 linting failure.
  • More information available here;
  • Language files updated.