>>
>> Hi Everyone,
>>
>> Last night, we received an alert of a possible XSS or iFrame injection issue somewhere on www.opensuse.org or one of the wikis.  We temporarily redirected the site and wikis to a maintenance page for about an hour while we assessed the risk and impact of the alert.  After learning a little more, we felt that it was not a legitimate alert, and we brought the site back up.  I am still waiting on a full report, so that we can figure out what to do for a long term solution.
>>
>> As a precaution, I am working on an immediate upgrade path to the latest version of Mediawiki and its plugins.  I will also be working on upgrading Apache to 2.2.21 on the www and wiki servers.
>>
>> -Matt
>>
>
>Thanks Matt.
>
>One day, someone should also have a look at the lizards.opensuse.org wordpress instance.
>Which start to be quite outdated now.


I completely agree.  In fact, I have started doing those yesterday on the test servers.  There is a minor glitch in the theme with the latest WordPress, but once that is resolved, we should be able to get that on production very soon.


-Matt