HEX
Server: Apache/2
System: Linux server.vm113-cu.cl1.il.proginter.com 4.18.0-553.78.1.el8_10.x86_64 #1 SMP Tue Oct 7 04:15:13 EDT 2025 x86_64
User: regevl (1053)
PHP: 7.4.33
Disabled: exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
Upload Files
File: /home/regevl/Maildir/new/1604068802.M761023P8282.server.vps4552-cu.uk.proginter.com,S=2353,W=2402
Return-Path: <regevl910@gmail.com>
Delivered-To: regevl@tll-hospitality.co.il
Received: from server.vps4552-cu.uk.proginter.com
	by server.vps4552-cu.uk.proginter.com with LMTP
	id 8AQ4LcIlnF9aIAAA0tGqwA
	(envelope-from <regevl910@gmail.com>)
	for <regevl@tll-hospitality.co.il>; Fri, 30 Oct 2020 16:40:02 +0200
Return-path: <regevl910@gmail.com>
Envelope-to: regevl@tll-hospitality.co.il
Delivery-date: Fri, 30 Oct 2020 16:40:02 +0200
Received: from root by server.vps4552-cu.uk.proginter.com with local (Exim 4.94)
	(envelope-from <regevl910@gmail.com>)
	id 1kYVZS-0005ZF-NC
	for regevl@tll-hospitality.co.il; Fri, 30 Oct 2020 16:40:02 +0200
To: regevl@tll-hospitality.co.il
Subject: [Installatron] WordPress 5.5.2 now available (security release)
Date: Fri, 30 Oct 2020 16:40:02 +0200
From: regevl910@gmail.com
Message-ID: <a1c064ff1c025dd906abb202deb32785@server.vps4552-cu.uk.proginter.com>
X-Mailer: Installatron Plugin 9.1.53
MIME-Version: 1.0
Content-Type: text/plain; charset=UTF-8

This is an automated email from Installatron. To unsubscribe from these emails or to change notification settings, login to your web hosting control panel, navigate to the Installatron tool, and select the installed applications you wish to modify.

An update to WordPress 5.5.2 (security release) is now available for the WordPress installations you are managing using Installatron. The following can be updated:

- http://my.to-web.co.il


The changes for this version are:

This security and maintenance release features 14 bug fixes in addition to 10 security fixes. Because this is a security release, it is recommended that you update your sites immediately.

Security
* Hardening of deserialization requests.
* A fix to disable spam embeds from disabled sites on a multisite network.
* Fixed an issue that could lead to XSS from global variables.
* Fixed an issue surrounding privilege escalation in XML-RPC. 
* Fixed an issue around privilege escalation around post commenting via XML-RPC.
* Fixed a method where a DoS attack could lead to RCE.
* Fixed a method to store XSS in post slugs.
* Fixed a method to bypass protected meta that could lead to arbitrary file deletion.
* Fixed a method that could lead to CSRF.

Login to your web hosting control panel and navigate to the Installatron tool to update your installed applications.

End of report.