b5media.com

Advertise with us

Enjoying this blog? Check out the rest of the Technology Channel Subscribe to this Feed

A Feed Is Born

Warning! Warning! Danger! Danger! FeedSmith users

by Juned on October 4th, 2007

Attention all WordPress punters! it is time re-install the new version of Feedburner’s FeedSmith plugin and it is for a very good reason - SECURITY. Burning Questions: The official FeedBurner weblog has announced that Feedburner Feedsmith - the plugin for WordPress, which counts all of your blog’s traffic via Feedburner - has a new and recommended security-related update.

Here are the specifics:

Potential security vulnerability

Some WordPress plugins that permit the entry of user-entered values, such as older versions of FeedSmith, can be vulnerable to what is called a “cross-site request forgery.” Without getting overly technical, this permits someone to change WordPress plugin settings on your system without you noticing during the time you are signed into your WordPress control panel. And no one wants that. [Source]

Instructions on how to protect your feed from forgery and how to download and update your Feedsmith plugin can be found here.

According to Burning Question this potential security problem was brough to their attention by this post from Blog Security, Kudos to the Blog Security,

I wonder does if this could be one of the reasons why the feed statistics of some blogs I know experienced a drop? See here.

POSTED IN: RSS Tools

1 opinion for Warning! Warning! Danger! Danger! FeedSmith users

Have an opinion? Leave a comment: