WordPress 5.8.1 Released to Fix Multiple Vulnerabilities
WordPress Update 5.8.1 addresses three security issues in REST API, Gutenberg editor and Lodash JavaScript library. Recommends updating now.
WordPress announced a security and maintenance release, version 5.8.1. It is important to update WordPress, especially versions 5.4 to 5.8 in order fix three security issues.WordPress 5.8.1 Security and Maintenance Release
It’s not uncommon for WordPress or any software for that matter to publish a bug fix update following a major version update in order to fix unforeseen issues as well as introduce improvements that didn’t make it in time for the major release. In WordPress those updates are called a maintenance release. This update also includes a security update, which is somewhat uncommon for the WordPress core. That makes this update more important than the typical maintenance release.WordPress Security Issues Fixed
WordPress 5.8.1 fixes three vulnerabilities:- A data exposure vulnerability within the REST API
- Cross-Site Scripting (XSS) vulnerability in the Gutenberg block editor
- Multiple critical to high severity vulnerabilities in the Lodash JavaScript Library
REST API Vulnerability
The WordPress REST API is an interface that allows plugins and themes to interact with the WordPress core. The REST API has been a source of security vulnerabilities, including most recently with the Gutenberg Template Library & Redux Framework vulnerability that affected over a million websites. This vulnerability is described as a data exposure vulnerability, which means that sensitive information could be revealed. There are no other details at this time regarding what kind of information but it could be as severe as passwords to data that could be used to mount an attack through another vulnerability.WordPress Gutenberg XSS Vulnerability
Cross-Site Scripting (XSS) vulnerabilities happen relatively frequently. They can happen whenever there is a user input like a contact or email form, any kind of input that is not “sanitized” to prevent the upload of scripts that can trigger unwanted behavior in the WordPress installation. The Open Web Application Security Project (OWASP) describes the potential harm of XSS vulnerabilities:“An attacker can use XSS to send a malicious script to an unsuspecting user. The end user’s browser has no way to know that the script should not be trusted, and will execute the script. Because it thinks the script came from a trusted source, the malicious script can access any cookies, session tokens, or other sensitive information retained by the browser and used with that site. These scripts can even rewrite the content of the HTML page.”This specific vulnerability affects the Gutenberg block editor.
WordPress Lodash JavaScript Library Vulnerabilities
These vulnerabilities may be the most concerning. The Lodash JavaScript library is a set of scripts used by developers that have been found to have multiple vulnerabilities. The latest and safest version is Lodash 4.17.21. The U.S. Homeland Security sponsored CVE List website details the vulnerability:“Lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function.”There appear to be many other vulnerabilities affecting the Lodash library in the 4.1.7 branch as well.
WordPress Urges Immediate Updating
These security vulnerabilities add a sense of urgency to this update. All publishers are recommended by WordPress to update. The official WordPress announcement recommends updating:“Because this is a security release, it is recommended that you update your sites immediately. All versions since WordPress 5.4 have also been updated.”
Cheap Recommended WordPress 5.8.1 Hosting Provider
ASPHostPortal Windows Hosting is 100% Compatible with WordPress 5.8.1
As a technology focused web host, ASPHostPortal's web hosting packages are designed to support popular web development technologies. Windows and WordPress 5.8.1 hosting are at the core of their business practice. ASPHostPortal has over 10 years combined experience in .NET, PHP, Network Administration, System Integration and related technologies to support mission critical hosting for applications built on these platforms.
ASPHostPortal is Microsoft No #1 Hosting Partner
ASPHostPortal.com is Microsoft No #1 Recommended Windows and ASP.NET Spotlight Hosting Partner in United States. Microsoft presents this award to ASPHostPortal.com for ability to support the latest Microsoft and ASP.NET technology, such as: WebMatrix, WebDeploy, Visual Studio 2015, ASP.NET 5, ASP.NET MVC 6, Silverlight 6 and Visual Studio Lightswitch.
ASPHostPortal WordPress 5.8.1 Hosting is Affordable
With regard to the Windows hosting packages, ASPHostPortal.com releases eight plans called Host Intro, Host One until Host Seven at the prices of $1.00/mo, $5.00/mo until $70.00/mo. Three billing cycles with different prices are available. For instance, the prices of the primary plan are rated at $5.00/mo for 3-year term, $6.00/mo for 1-year term and $8.00/mo for 3-month term.
ASPHostPortal WordPress 5.8.1 Hosting Speed and Uptime
ASPHostPortal reaches its 100% guarantee perfectly reaching its uptime guarantee. The success of ASPHostPortal results from its world-class data centers, latest technologies and many engineers’ commitments.
ASPHostPortal has multiple data centers in (US (Washington & Seattle), Netherlands (Amsterdam), Singapore, Hong Kong, United Kingdom (London), Australia (Melbourne), France (Paris), Germany (Frankfurt), Italy (Milan), India (Chennai), Canada (Toronto), Brazil (Sao Paulo)).You can be rest assured that your websites or dedicated servers are secured, managed and monitored in a state-of-the-art facility, and as a customer you have access to their engineers and the most reliable support team.
Cheap Recommended UK WordPress 5.8.1 Hosting Recommendation
UKWindowsHostASP.NET Using Premium Servers For Their WordPress 5.8.1 Hosting
UKWindowsHostASP.NET is using Premium servers from Dell; servers deliver excellent balance of outstanding performance, availability and flexibility for your growing network infrastructure applications as well
UKWindowsHostASP.NET Has WordClass Data Center
UKWindowsHostASP.NET provides global, on-demand data center and hosting services from facilities across the European Continent. They leverage best-in-class connectivity and technology to innovate industry leading, fully automated solutions that empower enterprises with complete access, control, security, and scalability. Their servers are located in the four prestiguous cities in Europe, namely: London (UK), Amsterdam (Netherlands), Frankfurt (Germany) and Paris (France).
UKWindowsHostASP.NET Has Excellent Uptime Rate
Their key strength in delivering the service to you is to maintain their server uptime rate. They never ever happy to see your site goes down and they truly understand that it will hurt your onlines business.
UKWindowsHostASP.NET is Microsoft No #1 UK Hosting Partner
UKWindowsHostASP.NET is Microsoft No #1 Recommended Windows and ASP.NET Hosting in European Continent. Their service is ranked the highest top #1 spot in several European countries, such as: Germany, Italy, Netherlands, France, Belgium, United Kingdom, Sweden, Finland, Switzerland and many top European countries.
Cheap Recommended India WordPress 5.8.1 Hosting Recommendation
WindowsASPNETHosting.IN is The Best India WordPress 5.8.1 Hosting
WindowsASPNETHosting.IN, one of the best WordPress 5.8.1 hosting provider in India. WindowsASPNETHosting.IN is an innovative web hosting brand which is tapped by a group of experienced developers. It has been devoting itself to providing unbeatable WordPress 5.8.1 hosting solutions for more than 10,000 websites all over the world, and enjoys high reputation from webmasters ranging from freelancers and small businesses to corporations and enterprises.
WindowsASPNETHosting.in Offers Uptime Guarantee
As the most reliable web hosting company, WindowsASPNETHosting.in guarantees at least 99.9% uptime, meaning that customers’ websites can be accessible at any time on the web. This is because the company uses 100% factory built and tested DELL servers, featuring SSD, RAID 5, 2x AMD Opteron 4226, and 32GB of RAM to maximize uptime to the largest extent.
Besides, WindowsASPNETHosting.in leverages the power of world-class data center to place these quality and robust web servers. The data center is rent from NWT – the largest IDC in India, featuring UPS for unceasing and stable power supply, advanced cooling system for climate control, DDoS response to avoid malicious attack, tier 3 telecom provider to shorten the network path, firewall to block unnecessary ports, and 24/7 monitoring to ensure all the facilities are working properly.
WindowsASPNETHosting.in Has Expert Customer Service
As customer service is the most essential part in web hosting, WindowsASPNETHosting.in spares no effort to satisfy every customer. This company owns a team of passionate and professional technical staffs, who are accessible twenty-four hours one day and seven days one week, even deep at night. In view of the support way, WindowsASPNETHosting.in makes customers well-prepared with email ticket. It contains quantities of hosting related articles in the knowledgebase, which is placed right under the support section.
WindowsASPNETHosting.in is Microsoft No #1 India Hosting Partner
WindowsASPNETHosting.in is the India’s #1 Windows hosting provider that offers the most reliable world class Windows hosting solutions for their customers. WindowsASPNETHosting.in provides high quality affordable India’s Windows hosting services for personal and companies of all sizes. Host your website with an innovative, reliable, and a friendly India’s Windows hosting company who cares about your business.