WordPress Dexter (2.3) has been available now for 24 days and there have been no vulnerabilities reported yet (atleast as far as we know).
Its been a quiet couple of weeks for WordPress vulnerability disclosure. In fact, according to WordPress BlogWatch WP 2.2.3 and Dexter remain vulnerability free - of course, this does not include themes and plugins.
This is quite a change as previous versions of WP required updates almost weekly to keep up with security findings. To this end, I conclude, either WordPress’s core code is getting better or vulnerability researchers have moved on to looking at other areas - you tend to get these spikes of activity.
Overall, I think WordPress developers have done a great job at handling the constant bombardment of findings over the last few months. Well done guys, keep up the great work!
Might want to read this:
http://wordpress.org/support/topic/138934?replies=15
It was fixed quickly though.
Andrea, thanks for pointing this out, we’ll look into it.
[...] Blog Security, en un ataque de optimismo, se apresuraba a felicitar a los autores de Wordpress por el sorprendente hecho de que la versión 2.3 llevaba ya veinticuatro [...]
[...] kurzem hat David von Blogsecurity schon gedacht, dass alle Sicherheitslücken weg sind und schwupps taucht schon die nächste [...]
[...] 2.3 Security: After releasing a post about improved security in the latest version of WordPress, Blog Security announced the first WordPress 2.3 security vulnerability has [...]
[...] 2.3 Security: After releasing a place most reinforced section in the latest edition of WordPress, Blog Security declared the prototypal WordPress 2.3 section vulnerability has [...]