Title: Version 4.4.7
Author: Subrata Sarkar
Published: February 18, 2019

---

# Version 4.4.7

## In this article

 * [Installation/Update Information](https://wordpress.org/documentation/wordpress-version/version-4-4-7/?output_format=md#installation-update-information)
 * [Summary](https://wordpress.org/documentation/wordpress-version/version-4-4-7/?output_format=md#summary)
 * [List of Files Revised](https://wordpress.org/documentation/wordpress-version/version-4-4-7/?output_format=md#list-of-files-revised)

[ Back to top](https://wordpress.org/documentation/wordpress-version/version-4-4-7/?output_format=md#wp--skip-link--target)

On 26 Jan, 2017, WordPress 4.4.7 was released to the public.

## 󠀁[Installation/Update Information](https://wordpress.org/documentation/wordpress-version/version-4-4-7/?output_format=md#installation-update-information)󠁿

To download WordPress 4.4.7, update automatically from the Dashboard > Updates menu
in your site’s admin area or visit [https://wordpress.org/download/release-archive/](https://wordpress.org/download/release-archive/).

For step-by-step instructions on installing and updating WordPress:

 * [Updating WordPress](https://wordpress.org/documentation/article/updating-wordpress/)

If you are new to WordPress, we recommend that you begin with the following:

 * [New To WordPress – Where to Start](https://wordpress.org/documentation/article/new_to_wordpress_-_where_to_start/)
 * [First Steps With WordPress](https://wordpress.org/documentation/article/first-steps-with-wordpress/)
   or [Upgrading WordPress Extended](https://wordpress.org/documentation/article/upgrading-wordpress-extended-instructions/)
 * [WordPress Lessons](https://wordpress.org/documentation/article/wordpress-lessons/)

## 󠀁[Summary](https://wordpress.org/documentation/wordpress-version/version-4-4-7/?output_format=md#summary)󠁿

From the [WordPress 4.7.2 release post](https://wordpress.org/news/2017/01/wordpress-4-7-2-security-release/):
WordPress versions 4.7.1 and earlier are affected by three security issues:

 1. The user interface for assigning taxonomy terms in Press This is shown to users
    who do not have permissions to use it. Reported by David Herrera of [Alley Interactive](https://www.alleyinteractive.com/).
 2. `WP_Query` is vulnerable to a SQL injection (SQLi) when passing unsafe data. WordPress
    core is not directly vulnerable to this issue, but we’ve added hardening to prevent
    plugins and themes from accidentally causing a vulnerability. Reported by [Mo Jangda](https://github.com/mjangda)(
    batmoo).
 3. A cross-site scripting (XSS) vulnerability was discovered in the posts list table.
    Reported by [Ian Dunn](https://iandunn.name/) of the WordPress Security Team.

## 󠀁[List of Files Revised](https://wordpress.org/documentation/wordpress-version/version-4-4-7/?output_format=md#list-of-files-revised)󠁿

    ```wp-block-preformatted
    wp-admin/about.php
    wp-admin/includes/class-wp-posts-list-table.php
    wp-admin/includes/class-wp-press-this.php
    wp-includes/query.php
    wp-includes/version.php
    readme.html
    ```

First published

February 18, 2019

Last updated