WordPress <= 2.0.2 security vulnerability
May 27th, 2006
A new security vulnerability has been disclosed for WordPress < = 2.0.2.
The only solution at the moment seems to restrict web access to the wp-content/cache/userlogins/ and wp-content/cache/users/ directories (e.g. with a .htaccess file). Thus, I’ve done so while the WordPress staff confirms and fixes this problem.