Hacker News new | ask | show | jobs
by przemoc 5359 days ago
I almost agree, i.e. second-level-legacy 0.7.x line is good enough for most of web needs, so indeed there is no really strong urge to upgrade to the current stable, though some nice features came later. What I do not agree is keeping really old 0.7.6 instead of upgrading to safer and more stable 0.7.6y (and if you do, going to the latest 0.7.69 is obviously the best solution).
1 comments

Upgrading to at least the latest minor version (0.7.6y as you say) may indeed be a good idea since there have been some security vulnerabilities discovered e.g.

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2629

Not sure if this poses any real danger in practice, but still -- better be safe than sorry.