Skip to content

Thursday, November 12th, 2009

Warning! Warning! Danger! Danger! FeedSmith users

October 4, 2007 by Juned  
Filed under Computers

Attention all WordPress punters! it is time re-install the new version of Feedburner’s FeedSmith plugin and it is for a very good reason – SECURITY. Burning Questions: The official FeedBurner weblog has announced that Feedburner Feedsmith – the plugin for WordPress, which counts all of your blog’s traffic via Feedburner – has a new and recommended security-related update.

Here are the specifics:

Potential security vulnerability

Some WordPress plugins that permit the entry of user-entered values, such as older versions of FeedSmith, can be vulnerable to what is called a “cross-site request forgery.” Without getting overly technical, this permits someone to change WordPress plugin settings on your system without you noticing during the time you are signed into your WordPress control panel. And no one wants that. [Source]

Instructions on how to protect your feed from forgery and how to download and update your Feedsmith plugin can be found here.

According to Burning Question this potential security problem was brough to their attention by this post from Blog Security, Kudos to the Blog Security,

I wonder does if this could be one of the reasons why the feed statistics of some blogs I know experienced a drop? See here.

  • StumbleUpon
  • Digg
  • Facebook
  • Mixx
  • Google
  • TwitThis
  • Reddit
  • Yahoo! Buzz
  • Slashdot
  • E-mail this story to a friend!
  • BallHype
  • YardBarker

Comments

One Response to “Warning! Warning! Danger! Danger! FeedSmith users”
  1. Kudos to the Blog Security

    We do our best :)

Speak Your Mind

Tell us what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!


About Us | Advertise with us | Blog for EveryJoe | Privacy Policy | Terms of Use
Get This Theme | Sitemap


All content is Copyright © 2005-2009 b5media. All rights reserved.