Although it isn’t very long after WordPress 2.8.1 was released, WordPress 2.8.2 was just released today and is a security update which corrects a XSS vulnerability which was discovered. Comment author URLs were not fully sanitized when displayed in the admin. This could be exploited to redirect you away from the admin to another site.
Due to this being a security update, it is strongly recommended that you upgrade your WordPress 2.8 installations as soon as possible. This can quickly and easily be done via your WordPress administrator panel (for WordPress 2.7 and newer installations) via Tools –> Upgrade, or you can manually download it here.
If you’d like to read the official announcement, you can see it here.
















I have updated already with no problems. I only saw it yesterday in my dashboard. Good to know that the security problem has been fixed.
Good to see WordPress are on top of this and released a patch so quickly. I know al ot of people moan about the amount of times they have to update but at least it makes your blog more secure.
can use this with my existing WP theme, because i heard may be some themes are still not supporting this version, very much reserve about that issue, have any solution, other the backup.