(+84) 463.28.7979

Security Update : Everyone Knows Your WordPress Version!


I was in a recent discussion with several WordPress bloggers, who were waiting in the sidelines to upgrade their WordPress versions to the latest recommended security upgrade WordPress 2.0.7 which fixes several PHP bugs and feed issues. Their laziness or fear to upgrade was based on the pretext that who knows their WordPress blog version anyway – I told them everyone knows your WordPress version!

If you look at the source code of any WordPress blog (easily possible in any web browser by going to View > Page Source), you will see
<# meta name=”generator” content=”WordPress 2.0.7″>

This is autogenerated by a php code in your header.php
<# meta name="generator" content="WordPress <#?php bloginfo('version'); ?>
<#!-- leave this for stats -->

So unless the WordPress blogger has removed the code purposely (reluctant by the comment that you should leave it for stats), anyone can easily find your wordpress version and hack into your WordPress bugs. So the excuse that nobody knows your version and hackers would not waste time targeting your blog is no good…

Upgrade regularly to the latest WordPress version which will give you new features and bug fixes. WordPress 2.1 is released and if you are waiting for your wordpress plugins to update, have no fear and upgrade with confidence.

Leave a Reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>