The latest version of WordPress – 2.3.3 is out now. It includes a major fix to the XML RPC file xmlrpc.php
A flaw was found in our XML-RPC implementation such that a specially crafted request would allow any valid user to edit posts of any other user on that blog. In addition to fixing this security flaw, 2.3.3 fixes a few minor bugs. If you are interested only in the security fix, download the fixed version of xmlrpc.php and copy it over your existing xmlrpc.php. Otherwise, you can get the entire release here.
Also, there is a vulnerability in the WP-Forum plugin that is being actively exploited right now. If you are using this plugin, please remove it until an update is available.
For more information about upgrading your WordPress installation visit WordPress Upgrade directions page at WordPress Codex
Some related articles you may like :
- WordPress (Version 2.3.2) is out upgrade now
- WordPress 2.5.1 update released
- How to secure your WordPress installation against hackers
- TinyMCE editor problem after wordpress2.7 install
- Why is my template selection page in WordPress showing cryptic CSS
- Browser hogging CPU when taking wordpress write post page!
- WordPress blog painfully slow except for front page
- What to do if your firefox wont load a wordpress blog

