Recently 3.0.5
This release includes the following changes:
- Fixes a potential XSS vulnerability (props to Yu Iwama of Secure Sky Technology Inc. and the JPCERT/CC Vulnerability Coordination Group).
- Fixes a potential code injection vulnerability (props to Jerome & NinTechNet).
- Fixes a fatal error that can occur when using stock thumbnail sizes (props to rianovost).
- Fixes a srcset bug that affects specific PHP locales (props to fredel).
- Fixes a srcset not loading images due to improper SSL/HTTPS configuration (props to aj4h).
- Fixes a views/comments translation issue that affects some languages.
If you're using a caching plugin, flushing its cache after installing/upgrading to this version is highly recommended.