Version 4.6.11

On 3 April, 2018, WordPress 4.6.11 was released to the public.

Installation/Update Information Installation/Update Information

To download WordPress 4.6.11, update automatically from the Dashboard > Updates menu in your site’s admin area or visit https://wordpress.org/download/release-archive/.

For step-by-step instructions on installing and updating WordPress:

If you are new to WordPress, we recommend that you begin with the following:

Top ↑

Summary Summary

From the WordPress 4.9.5 release post, WordPress versions 4.9.4 and earlier are affected by three security issues. As part of the core team’s ongoing commitment to security hardening, the following fixes have been implemented:

  1. Don’t treat localhost as same host by default.
  2. Use safe redirects when redirecting the login page if SSL is forced.
  3. Make sure the version string is correctly escaped for use in generator tags.

Top ↑

List of Files Revised List of Files Revised

/wp-login.php 
/wp-includes/general-template.php 
/wp-includes/http.php