<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Major Security Hole in WordPress? Turning off Comments</title>
	<atom:link href="http://cafe.elharo.com/web/major-security-hole-in-wordpress-turning-off-comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://cafe.elharo.com/web/major-security-hole-in-wordpress-turning-off-comments/</link>
	<description>Longer than a blog; shorter than a book</description>
	<pubDate>Tue, 06 Jan 2009 08:02:38 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.3</generator>
		<item>
		<title>By: iwebie</title>
		<link>http://cafe.elharo.com/web/major-security-hole-in-wordpress-turning-off-comments/#comment-247581</link>
		<dc:creator>iwebie</dc:creator>
		<pubDate>Sun, 13 Jul 2008 01:50:25 +0000</pubDate>
		<guid isPermaLink="false">http://cafe.elharo.com/web/major-security-hole-in-wordpress-turning-off-comments/#comment-247581</guid>
		<description>I used to use Wordpress, but I got sick of all the security holes and switched back to MovableType.</description>
		<content:encoded><![CDATA[<p>I used to use Wordpress, but I got sick of all the security holes and switched back to MovableType.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MIke</title>
		<link>http://cafe.elharo.com/web/major-security-hole-in-wordpress-turning-off-comments/#comment-32177</link>
		<dc:creator>MIke</dc:creator>
		<pubDate>Wed, 22 Nov 2006 16:01:01 +0000</pubDate>
		<guid isPermaLink="false">http://cafe.elharo.com/web/major-security-hole-in-wordpress-turning-off-comments/#comment-32177</guid>
		<description>To be quite honest, there is more than this one security hole in wordpress.  The devs over at Wordpress should setup a testing server and run the Acunetix Web Vulnerability Scanner on it to see just how bad wordpress really is.  I was totally shocked by the amount of areas in which XXS (cross site scripting) could be used against the blog.  If they want a secure platform they are going to need to be a little more constructive and a little less 'up' themselves.

Don't get me wrong, I love wordpress and I am running it myself but I'm totally disgusted by the lack of care and attention.</description>
		<content:encoded><![CDATA[<p>To be quite honest, there is more than this one security hole in wordpress.  The devs over at Wordpress should setup a testing server and run the Acunetix Web Vulnerability Scanner on it to see just how bad wordpress really is.  I was totally shocked by the amount of areas in which XXS (cross site scripting) could be used against the blog.  If they want a secure platform they are going to need to be a little more constructive and a little less &#8216;up&#8217; themselves.</p>
<p>Don&#8217;t get me wrong, I love wordpress and I am running it myself but I&#8217;m totally disgusted by the lack of care and attention.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
