[wp-hackers] Rethinking check_admin_referer()

Matt Mullenweg m at mullenweg.com
Wed Apr 19 05:25:40 GMT 2006


Brian Layman wrote:
> Mark Jaquith spammed:
>> A little late on that one... that vulnerability (and fix) was posted  
>> on http://snotty-php-kidz.net/ two days ago.
> 
> HEY - I actually wasted 15 seconds of my life following that link....

Good thing it wasn't a malicious link, it would have been a brilliant 
proof of concept. (I clicked it too.)

-- 
Matt Mullenweg
  http://photomatt.net | http://wordpress.org
http://automattic.com | http://akismet.com


More information about the wp-hackers mailing list