Home

New Tech Heroes

New Media and Social Publishing

Navigation

  • Home
  • About
    • Site rules
    • Privacy policy
    • Contact
    • About Tom Kephart
Home

Thought provoking

  • Joomla! 1.5.4 Released
  • Ira Glass on Getting Creative Work Done
  • Get Productive with Social Media (and Stay Sane)
  • What Social Media Does Best
  • Could Your Google Search Indict You?
  • The end of SEO?
  • It's All Too Much
  • 20+ Must-Have WordPress 2.5 Compatible Plugins
more

Tag cloud

Adobe AIR amateurs Apple blog blogger blogging blogs browsers buyout CMS content management development Drupal Facebook Firefox flashback friendfeed funny Gmail Google history Internet Internet Explorer jobs Joomla Mahalo marketing Microsoft new media online Open Source patch Plone privacy radio reputation Safari Scoble security SEO SharePoint SilverStripe social social networking social publishing spam TechCrunch Tom Kephart upgrade venture capital video virtual conversation Vista vulnerability web Web 2.0 web design WordPress Yahoo

upgrade

Wednesday's featured links (WordPress 2.5 special edition) - April 2, 2008

Submitted by Tom Kephart on Wed, 04/02/2008 - 2:58pm.
  • upgrade
  • WordPress

Some stories from around the blogosphere about people's experiences (so far) with WordPress 2.5:

  • 5 things we love about WordPress 2.5 - by Josh Lowensohn from Webware - "The new system cross checks your plug-ins with the database at Wordpress.org, and if there's an update it will  both let you know, as well as give you a one click option to update it to the latest version."
  • My brain dump after upgrading to Wordpress 2.5 - by Colin Devroe from cdevroe.com - "As with all Wordpress upgrades, it is as easy as advertised. I was able to click Upgrade and in a matter of milliseconds my database was updated. Since I hadn’t upgraded since prior to 2.2 I had a few plugins that were now rendered obsolete, so I deactivated them, edited only a few template tags, and deleted a few template files - and I was done."
  • Upgraded to Wordpress 2.5 - by Michael Kimsal from michaelkimsal.com - "There are some slick aspects to it, and it’s been cleaned up some. However, it’s still Wordpress, for better or for worse. I guess it’s mostly “for better” (I’m still using it!) but there are some things that still bug me which I was hoping were addressed. I’ll list those in a moment, but I will say the ‘multiple media’ file upload (done in Flash) is a nice feature."
  • Wordpress 2.5: don’t be scared - by Cellobella from Redsultana - "But do your homework. Maybe you’d like to wait a little longer. Make sure all the bugs are discovered. Fair enough. You don’t have to upgrade. If you do want to - the instructions on Wordpress worked really well for me."
  • Goodbye Movable Type, Hello WordPress - by Mike Davidson from Mike Industries - "I didn’t even plan to change platforms, but after more than a week of trying unsuccessfully to move from Movable Type 3.0 to Movable Type 4.0, this blog was in such a state of disarray under the covers that I began to wonder if switching to WordPress would be quicker altogether."
Bookmark/Search this post with:
  • Delicious
  • Digg
  • StumbleUpon
  • Reddit
  • Magnoliacom
  • Newsvine
  • Google
  • Technorati
  • Icerocket
  • 3 comments

JavaScript vulnerability in Drupal prompts 6.1 release

Submitted by Tom Kephart on Wed, 02/27/2008 - 6:43pm.
  • Drupal
  • JavaScript
  • patch
  • upgrade
  • vulnerability

A "moderately critical" ECMAScript/JavaScript vulnerability in Drupal has been fixed in the latest release, version 6.1. All users of the 6.0 version of Drupal are encouraged to patch their current installations or install the complete version 6.1 files.

A potential cross-site scripting (XSS) vulnerability (SA-2008-018) existed in the handling of titles on content edit forms. A JavaScript function used to escape text wasn't working correctly, and is fixed in the latest version.

The legacy 5.x line of Drupal remains at version 5.7, and is not affected by this vulnerability.

Drupal 6.1 is available for download from the main Drupal website.

Bookmark/Search this post with:
  • Delicious
  • Digg
  • StumbleUpon
  • Reddit
  • Magnoliacom
  • Newsvine
  • Google
  • Technorati
  • Icerocket
  • 4 comments

Drupal issues maintenance upgrade to 5.7

Submitted by Tom Kephart on Mon, 02/11/2008 - 10:09pm.
  • Drupal
  • patch
  • register_globals
  • upgrade

Drupal was updated to version 5.7 on January 29th. No new features are included in this version. Several bugs were fixed, two of which are medium-level security issues:

  • The input configuration format page was fixed. This specifies the types of HTML tags that are allowed in nodes, including comments, and when set correctly can filter out potentially malicious HTML code from submitted material.
  • A more accurate way to check for PHP's register_globals setting was added. Leaving register_globals turned on is a significant security risk when using Drupal, and is not recommended.

Users of earlier Drupal 5 series versions should upgrade to 5.7. The older Drupal 4.7.x branch is still being maintained as well; if you're using that, it isn't necessary to upgrade to 5.7. The current version of the 4.7 series is 4.7.11.

Drupal 6 release candidate 4 was released Friday for evaluation by users. Use of release candidates on production sites isn't recommended.

New Tech Heroes is powered by Drupal, our open source content management system of choice.

Bookmark/Search this post with:
  • Delicious
  • Digg
  • StumbleUpon
  • Reddit
  • Magnoliacom
  • Newsvine
  • Google
  • Technorati
  • Icerocket
  • 6 comments

New Tech Heroes

Editor: Tom Kephart

Grab the RSS feed
or subscribe by email

Add to Technorati Favorites

View Tom Kephart's profile on LinkedIn

Lijit Search


follow TomKephart at http://twitter.com

Popular content

Today's:

  • [flashback] The Spot - lonelygirl15's beach party ancestors
  • Drupal 6.2 release fixes bugs and security issues
  • Wednesday's featured links - March 12, 2008

All time:

  • Drupal issues maintenance upgrade to 5.7
  • Scoble cries; blogosphere freaks; Jesus returns
  • Google Sites: Stone Cold Killa? Perhaps not.

Blogroll

CMS versions

  • Drupal 6.2
    (legacy 5.7)
  • Joomla! 1.5.4
    (legacy 1.0.15)
  • WordPress 2.5.1
    (legacy 2.0.11)
  • Movable Type 4.12
  • Plone 3.1.2
  • CMS Made Simple 1.3.1
  • MODx 0.9.6.1
  • SilverStripe 2.2.2
  • ExpressionEngine 1.6.4
  • Alfresco Community 2.9B
  • Midgard CMS 1.8.8

Creative Commons License

This work is licensed under a Creative Commons Attribution-Share Alike 3.0 United States License.

© 2008 Kephart & Associates, Marine City, Michigan. Our privacy policy.
Powered by Drupal. Customized theme based on Tapestry by RoopleTheme.
Web hosting by pair Networks.

Kephart & Associates