Wordpress 2.1.1 Release Compromised by Cracker
The recent 2.1.1 release of the popular blog software Wordpress was compromised by a cracker who made it easier for to execute code remotely. This is interesting because the official release was quietly and subtly compromised, and has been in the wild for a few days now. There's no word on if any affected sites have been compromised, but anyone running Wordpress is urged to upgrade to 2.1.2 immediately
http://it.slashdot.org/article.pl?sid=07/03/03/0427211
I'm on my way to upgrading mine :-(