从WordPress 5.3.1发布帖子开始,WordPress版本5.3和更早版本受到以下错误的影响,这些错误已在5.3.1版中修复。对于尚未更新到5.3的用户,也可以使用WordPress 3.7以后的WordPress 5.2和更早版本的更新版本。丹尼尔·巴赫伯(Daniel Bachhuber)的建议,以查找无权用户可以通过REST API张贴帖子的问题。
RIPS Technologies的Simon Scannell的支柱,用于发现和公开跨站点脚本(XSS)可以存储在精心设计的链接中的问题。
向WordPress.org安全团队提供支持,wp_kses_bad_protocol()以确保其了解命名的冒号属性。
对Nguyen的支持The Duc使用块编辑器内容发现已存储的XSS漏洞。
维护更新管理:改进了管理表单,以控制高度和对齐方式的标准化(请参阅相关的 开发说明),仪表板小部件链接可访问性和替代的配色方案可读性问题(请参阅相关的 开发说明)。
块编辑器:修复Edge滚动问题和间歇性JavaScript问题。
捆绑主题:添加定制程序选项以显示/隐藏作者简介,用CSS替换基于JS的平滑滚动(请参阅相关的 开发说明)并修复Instagram嵌入的CSS。
日期/时间:改进非GMT日期的计算,修复特定语言的日期格式输出,并使 get_permalink() PHP时区更改更具弹性。
嵌入:删除不再提供CollegeHumor oEmbed的提供程序,因为该服务不再存在。
外部库:update sodium_compat。
站点健康:允许过滤提醒管理员的电子邮件验证间隔。
上传:避免在文件名匹配时缩略图覆盖其他上传,并在上传后排除PNG图片的缩放。
用户:确保管理电子邮件验证使用用户的区域设置而不是网站区域设置。
WordPress文件修订列表src / js / _enqueues / lib / admin-bar.js
src / js / _enqueues / wp / widgets / media.js
src / js / media / views / settings.js
src / wp-admin / css / about.css
src / wp-admin / css / color-picker.css
src / wp-admin / css / colors / _admin.scss
src / wp-admin / css / colors / _mixins.scss
src / wp-admin / css / colors / _variables.scss
src / wp-admin / css / common.css
src / wp-admin / css / customize-controls.css
src / wp-admin / css / dashboard.css
src / wp-admin / css / edit.css
src / wp-admin / css / forms.css
src / wp-admin / css / install.css
src / wp-admin / css / list-tables.css
src / wp-admin / css / media.css
src / wp-admin / css / themes.css
src / wp-admin / includes / class-walker-nav-menu-checklist.php
src / wp-admin / includes / class-wp-list-table.php
src / wp-admin / includes / class-wp-site-health.php
src / wp-admin / includes / credits.php
src / wp-admin / includes / dashboard.php
src / wp-admin / includes / image.php
src / wp-admin / includes / nav-menu.php
src / wp-admin / includes / plugin.php
src / wp-admin / user-edit.php
src / wp-content / themes / twentytwenty / assets / js / color-calculations.js
src / wp-content / themes / twentytwenty / assets / js / index.js
src / wp-content / themes / twentytwenty / classes / class-twentytwenty-customize.php
src / wp-content / themes / twentytwenty / classes / class-twentytwenty-non-latin-languages.php
src / wp-content / themes / twentytwenty / footer.php
src / wp-content / themes / twentytwenty / inc / template-tags.php
src / wp-content / themes / twentytwenty / style-rtl.css
src / wp-content / themes / twentytwenty / style.css
src / wp-content / themes / twentytwenty / template-parts / entry-author-bio.php
src / wp-includes / class-wp-oembed.php
src / wp-includes / class-wp-xmlrpc-server.php
src / wp-includes / comment-template.php
src / wp-includes / css / buttons.css
src / wp-includes / css / editor.css
src / wp-includes / css / media-views.css
src / wp-includes / feed.php
src / wp-includes / functions.php
src / wp-includes / kses.php
src / wp-includes / link-template.php
src / wp-includes / media-template.php
src / wp-includes / media.php
src / wp-includes / option.php
src / wp-includes / script-loader.php
src / wp-includes / sodium_compat / LICENSE
src / wp-includes / sodium_compat / autoload.php
src / wp-includes / sodium_compat / composer.json
src / wp-includes / sodium_compat / lib / constants.php
src / wp-includes / sodium_compat / lib / namespaced.php
src / wp-includes / sodium_compat / lib / php72compat.php
src / wp-includes / sodium_compat / lib / php72compat_const.php
src / wp-includes / sodium_compat / lib / sodium_compat.php
src / wp-includes / sodium_compat / src / Compat.php
src / wp-includes / sodium_compat / src / Core / BLAKE2b.php
src / wp-includes / sodium_compat / src / Core / Base64 / Common.php
src / wp-includes / sodium_compat / src / Core / Base64 / Original.php
src / wp-includes / sodium_compat / src / Core / Base64 / UrlSafe.php
src / wp-includes / sodium_compat / src / Core / Ed25519.php
src / wp-includes / sodium_compat / src / Core / Poly1305 / State.php
src / wp-includes / sodium_compat / src / Core / SecretStream / State.php
src / wp-includes / sodium_compat / src / Core / XChaCha20.php
src / wp-includes / sodium_compat / src / Core32 / BLAKE2b.php
src / wp-includes / sodium_compat / src / Core32 / Ed25519.php
src / wp-includes / sodium_compat / src / Core32 / Poly1305 / State.php
src / wp-includes / sodium_compat / src / Core32 / SecretStream / State.php
src / wp-includes / sodium_compat / src / Core32 / X25519.php
src / wp-includes / sodium_compat / src / Crypto.php
src / wp-includes / sodium_compat / src / Crypto32.php
src / wp-includes / sodium_compat / src / File.php
src / wp-includes / sodium_compat / src / PHP52 / SplFixedArray.php
src / wp-includes / version.php
src / wp-login.php