There’s been another minor drop of WordPress, version 2.8.2, released just a few days after 2.8.1. It doesn’t look like much has changed but there’s one important change under the hood.
Apparently v2.8.1 had a cross-site scripting issue that allowed rogue plugins to potentially redirect an admin user to a different website. This could be an issue, though I personally don’t know if anyone would fall for that without noticing. I mean, if you had a website that sold pond supplies and you suddenly found yourself on a Russian site, you’d sorta know that something wasn’t kosher.
It’s not a major release, but head down and download WordPress 2.8.2
