TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

WordPress before 3.6.1: PHP Object Injection

5 pointsby tomvangoethemover 11 years ago

1 comment

JiJadiJadeover 11 years ago
This is pretty a lengthy read and if I follow it correctly, then the actual problem has not been fixed? So Wordpress is still not able to differ between injected serialized data (which is dangerous as the PHP manual states as well) and that data it serialized on it's own, right?
评论 #6374552 未加载