Powered by Twitter.com. See the tips archive here.
Powered by www.flickr.com. See the photo archive here.
Notice: This website, specifically this post, and the views contained may not necessarily be the views of the author's employers, friends or family.

Movable Type 3.15

Well that figures. I drag my feet and then I decided to drag them some more on updating the Movable Type installation on this site and then barely a week later, out comes a new version. Damn.

Apparently this update / patch has been released in order to fix an issue that allows someone to spread spam via your site if you have comment notification on. Now, I don’t use that feature, mainly becuase I really don’t care what people say in my comments and because I get so few as of late that I’m not about to kill any of them. However, I should (and will) install this upgrade anyway. And so should anyone else out there that runs Movable Type.

From their “alert“:

Version 3.15 fixes a vulnerability in the mail sending packages for all Movable Type versions in which the user has enabled comment notifications. This vulnerability allows a malicious user to send email through the application to any number of arbitrary users.

All Movable Type users should install this update.

By the way, to install the upgrade you have to get it from your Movable Type Account.

blog comments powered by Disqus