diff --git a/.cvsignore b/.cvsignore
deleted file mode 100644
index 08171c3..0000000
--- a/.cvsignore
+++ /dev/null
@@ -1 +0,0 @@
-wordpress-2.8.4.tar.gz
diff --git a/.gitignore b/.gitignore
new file mode 100644
index 0000000..75c7dfd
--- /dev/null
+++ b/.gitignore
@@ -0,0 +1,2 @@
+clog
+/wordpress-*.tar.gz
diff --git a/Makefile b/Makefile
deleted file mode 100644
index b7ae9bc..0000000
--- a/Makefile
+++ /dev/null
@@ -1,21 +0,0 @@
-# Makefile for source rpm: wordpress
-# $Id$
-NAME := wordpress
-SPECFILE = $(firstword $(wildcard *.spec))
-
-define find-makefile-common
-for d in common ../common ../../common ; do if [ -f $$d/Makefile.common ] ; then if [ -f $$d/CVS/Root -a -w $$/Makefile.common ] ; then cd $$d ; cvs -Q update ; fi ; echo "$$d/Makefile.common" ; break ; fi ; done
-endef
-
-MAKEFILE_COMMON := $(shell $(find-makefile-common))
-
-ifeq ($(MAKEFILE_COMMON),)
-# attept a checkout
-define checkout-makefile-common
-test -f CVS/Root && { cvs -Q -d $$(cat CVS/Root) checkout common && echo "common/Makefile.common" ; } || { echo "ERROR: I can't figure out how to checkout the 'common' module." ; exit -1 ; } >&2
-endef
-
-MAKEFILE_COMMON := $(shell $(checkout-makefile-common))
-endif
-
-include $(MAKEFILE_COMMON)
diff --git a/README.fedora.wordpress b/README.fedora.wordpress
index 8a4518d..7fdb058 100644
--- a/README.fedora.wordpress
+++ b/README.fedora.wordpress
@@ -1,3 +1,5 @@
+-------------------------------------------------------------------------------
+
Wordpress is a database driven blogging program designed to make it exceedingly
easy to publish an online blog, sometimes also called a weblog or journal.
@@ -43,3 +45,42 @@ Once that's done and the database server and web server have been started,
open a web browser to http://localhost/wordpress/wp-admin/install.php and
follow the instructions given to you on the pages you see to set up the
database tables and begin publishing your blog.
+
+-------------------------------------------------------------------------------
+
+Wordpress ships with Flash and Silverlight plugins for the 'plupload' file
+uploader and the 'mediaelement' media player embedder. The idea is to try and
+be able to provide a multi-file uploader and an embedded video player when
+HTML5 is not available (or does not support the video format in question).
+These plugins are provided as pre-built binaries and there is no mechanism
+for building them from source during Wordpress compilation. As the inclusion
+of pre-built binaries is against Fedora policy - see
+https://fedoraproject.org/wiki/Packaging:Guidelines#No_inclusion_of_pre-built_binaries_or_libraries
+ - these plugins have been removed from the Fedora package. As a consequence:
+
+a) any Wordpress element or plugin that uses the 'plupload' will only present
+an HTML5-based multi-file uploader if HTML5 is supported by the user's browser
+or an HMTL4-based single-file uploader in HTML5 is not supported. No Flash
+or Silverlight-based multi-file uploader will be provided.
+
+b) If you try to embed media into a Wordpress post using the [video] and
+[audio] short tags, the media player will be visible if the reader is using
+a browser that has HTML5 support for the media format in question; if not, the
+'Download Media' link will be offered. No Flash or Silverlight-based player
+element will be included.
+
+-------------------------------------------------------------------------------
+
+Optional dependencies:
+
+You may wish to install the following packages:
+
+ php-pecl-imagick: optimize image transformation
+ php-pecl-ssh2: for file transfert using ssh
+
+An opcode cache is also recommended:
+ php 5.5: php-opcache
+ php 5.4: php-pecl-zendopcache
+ php 5.3: php-pecl-apc
+
+-------------------------------------------------------------------------------
diff --git a/README.fedora.wordpress-mu b/README.fedora.wordpress-mu
new file mode 100644
index 0000000..af10453
--- /dev/null
+++ b/README.fedora.wordpress-mu
@@ -0,0 +1,5 @@
+As of wordpress 3.0.x, upstream has deprecated wordpress-mu. This
+functionality has been included in mainline wordpress. For
+information on migrating from wordpress-mu, visit
+http://codex.wordpress.org/Migrating_Multiple_Blogs_into_WordPress_3.0_Multisite
+
diff --git a/sources b/sources
index dfab4f8..80ec3c6 100644
--- a/sources
+++ b/sources
@@ -1 +1 @@
-0e8b296d4e2d4189b349f1d0f727bd98 wordpress-2.8.4.tar.gz
+SHA512 (wordpress-7.1.tar.gz) = 4bb95bddeb0d30778b9d744e42f7e21507ed3070fda3e34dd41918073618181e350cf77ea8dfaacc48c59a00f50273b4a1b7a6e4c43d2a81ccfd35f27df342bc
diff --git a/wordpress-5.1-tinymce_noflash.patch b/wordpress-5.1-tinymce_noflash.patch
new file mode 100644
index 0000000..0d0e79c
--- /dev/null
+++ b/wordpress-5.1-tinymce_noflash.patch
@@ -0,0 +1,35 @@
+diff -up wordpress/wp-includes/js/tinymce/plugins/media/plugin.js.orig wordpress/wp-includes/js/tinymce/plugins/media/plugin.js
+--- wordpress/wp-includes/js/tinymce/plugins/media/plugin.js.orig 2019-02-21 14:59:28.793415420 +0100
++++ wordpress/wp-includes/js/tinymce/plugins/media/plugin.js 2019-02-21 15:00:14.319647286 +0100
+@@ -166,7 +166,6 @@ var media = (function () {
+ mp4: 'video/mp4',
+ webm: 'video/webm',
+ ogg: 'video/ogg',
+- swf: 'application/x-shockwave-flash'
+ };
+ var fileEnd = url.toLowerCase().split('.').pop();
+ var mime = mimes[fileEnd];
+@@ -424,14 +423,6 @@ var media = (function () {
+ var allowFullscreen = data.allowFullscreen ? ' allowFullscreen="1"' : '';
+ return '';
+ };
+- var getFlashHtml = function (data) {
+- var html = '';
+- return html;
+- };
+ var getAudioHtml = function (data, audioTemplateCallback) {
+ if (audioTemplateCallback) {
+ return audioTemplateCallback(data);
+@@ -494,8 +485,6 @@ var media = (function () {
+ });
+ if (data.type === 'iframe') {
+ return getIframeHtml(data);
+- } else if (data.source1mime === 'application/x-shockwave-flash') {
+- return getFlashHtml(data);
+ } else if (data.source1mime.indexOf('audio') !== -1) {
+ return getAudioHtml(data, audioTemplateCallback);
+ } else if (data.type === 'script') {
diff --git a/wordpress-5.4-config.patch b/wordpress-5.4-config.patch
new file mode 100644
index 0000000..4f94404
--- /dev/null
+++ b/wordpress-5.4-config.patch
@@ -0,0 +1,35 @@
+diff -up wordpress/wp-config.php.rpm wordpress/wp-config.php
+--- wordpress/wp-config.php.rpm 2020-10-20 15:05:26.351765085 +0200
++++ wordpress/wp-config.php 2020-10-20 15:05:48.663684089 +0200
+@@ -66,6 +66,22 @@ define( 'NONCE_SALT', 'put your un
+ $table_prefix = 'wp_';
+
+ /**
++ * See http://make.wordpress.org/core/2013/10/25/the-definitive-guide-to-disabling-auto-updates-in-wordpress-3-7
++ */
++
++/* Disable all file change, as RPM base installation are read-only */
++define('DISALLOW_FILE_MODS', true);
++
++/* Please ensure that this is either 'direct', 'ssh2', 'ftpext', 'ftpsockets' or false */
++define('FS_METHOD', 'direct');
++
++/* Disable automatic updater, in case you want to allow
++ above FILE_MODS for plugins, themes, ... */
++define('AUTOMATIC_UPDATER_DISABLED', true);
++
++/* Core update is always disabled, WP_AUTO_UPDATE_CORE value is ignore */
++
++/**
+ * For developers: WordPress debugging mode.
+ *
+ * Change this to true to enable the display of notices during development.
+@@ -83,7 +99,7 @@ define( 'WP_DEBUG', false );
+
+ /** Absolute path to the WordPress directory. */
+ if ( ! defined( 'ABSPATH' ) ) {
+- define( 'ABSPATH', __DIR__ . '/' );
++ define('ABSPATH', '/usr/share/wordpress');
+ }
+
+ /** Sets up WordPress vars and included files. */
diff --git a/wordpress-5.6-mediaelement_no_swf.patch b/wordpress-5.6-mediaelement_no_swf.patch
new file mode 100644
index 0000000..4ee0eec
--- /dev/null
+++ b/wordpress-5.6-mediaelement_no_swf.patch
@@ -0,0 +1,38 @@
+diff -up wordpress/wp-includes/js/mediaelement/mediaelement-and-player.js.no wordpress/wp-includes/js/mediaelement/mediaelement-and-player.js
+--- wordpress/wp-includes/js/mediaelement/mediaelement-and-player.js.no 2020-09-29 17:53:06.000000000 +0200
++++ wordpress/wp-includes/js/mediaelement/mediaelement-and-player.js 2020-12-09 09:44:27.954254919 +0100
+@@ -6135,6 +6135,7 @@ if (hasFlash) {
+ }
+ });
+
++/* swf files removed from RPM
+ var FlashMediaElementVideoRenderer = {
+ name: 'flash_video',
+ options: {
+@@ -6219,6 +6220,7 @@ if (hasFlash) {
+ create: FlashMediaElementRenderer.create
+ };
+ _renderer.renderer.add(FlashMediaElementAudioOggRenderer);
++*/
+ }
+
+ },{"2":2,"25":25,"27":27,"28":28,"3":3,"5":5,"7":7,"8":8}],21:[function(_dereq_,module,exports){
+diff -up wordpress/wp-includes/js/mediaelement/mediaelement.js.no wordpress/wp-includes/js/mediaelement/mediaelement.js
+--- wordpress/wp-includes/js/mediaelement/mediaelement.js.no 2020-09-29 17:53:06.000000000 +0200
++++ wordpress/wp-includes/js/mediaelement/mediaelement.js 2020-12-09 09:44:38.532227178 +0100
+@@ -1842,6 +1842,7 @@ if (hasFlash) {
+ }
+ });
+
++/* swf files removed from RPM
+ var FlashMediaElementVideoRenderer = {
+ name: 'flash_video',
+ options: {
+@@ -1926,6 +1927,7 @@ if (hasFlash) {
+ create: FlashMediaElementRenderer.create
+ };
+ _renderer.renderer.add(FlashMediaElementAudioOggRenderer);
++*/
+ }
+
+ },{"16":16,"18":18,"19":19,"2":2,"3":3,"5":5,"7":7,"8":8}],12:[function(_dereq_,module,exports){
diff --git a/wordpress-6.8-hello.patch b/wordpress-6.8-hello.patch
new file mode 100644
index 0000000..32bdca9
--- /dev/null
+++ b/wordpress-6.8-hello.patch
@@ -0,0 +1,60 @@
+diff -up wordpress/wp-content/plugins/hello.php.dolly wordpress/wp-content/plugins/hello.php
+--- wordpress/wp-content/plugins/hello.php.dolly 2025-04-16 08:21:31.710644174 +0200
++++ wordpress/wp-content/plugins/hello.php 2025-04-16 08:23:15.011000365 +0200
+@@ -6,7 +6,7 @@
+ /*
+ Plugin Name: Hello Dolly
+ Plugin URI: http://wordpress.org/plugins/hello-dolly/
+-Description: This is not just a plugin, it symbolizes the hope and enthusiasm of an entire generation summed up in two words sung most famously by Louis Armstrong: Hello, Dolly. When activated you will randomly see a lyric from Hello, Dolly in the upper right of your admin screen on every page.
++Description: This is not just a plugin, it symbolizes the hope and enthusiasm of an entire generation summed up in two words sung most famously by Richard M. Stallman: Free Software. When activated you will randomly see a lyric from the Free Software Song in the upper right of your admin screen on every page.
+ Author: Matt Mullenweg
+ Version: 1.7.2
+ Author URI: http://ma.tt/
+@@ -18,34 +18,19 @@ if ( ! defined( 'ABSPATH' ) ) {
+ }
+
+ function hello_dolly_get_lyric() {
+- /** These are the lyrics to Hello Dolly */
+- $lyrics = "Hello, Dolly
+-Well, hello, Dolly
+-It's so nice to have you back where you belong
+-You're lookin' swell, Dolly
+-I can tell, Dolly
+-You're still glowin', you're still crowin'
+-You're still goin' strong
+-I feel the room swayin'
+-While the band's playin'
+-One of our old favorite songs from way back when
+-So, take her wrap, fellas
+-Dolly, never go away again
+-Hello, Dolly
+-Well, hello, Dolly
+-It's so nice to have you back where you belong
+-You're lookin' swell, Dolly
+-I can tell, Dolly
+-You're still glowin', you're still crowin'
+-You're still goin' strong
+-I feel the room swayin'
+-While the band's playin'
+-One of our old favorite songs from way back when
+-So, golly, gee, fellas
+-Have a little faith in me, fellas
+-Dolly, never go away
+-Promise, you'll never go away
+-Dolly'll never go away again";
++ // These are the lyrics to the Free Software Song
++ $lyrics = "Join us now and share the software;
++You'll be free, hackers, you'll be free.
++Hoarders may get piles of money,
++That is true, hackers, that is true.
++But they cannot help their neighbors;
++That ain't good, hackers, that ain't good.
++When we have enough free software
++At our call, hackers, at our call,
++We'll kick out those dirty licenses
++Ever more, hackers, ever more.
++Join us now and share the software;
++You'll be free, hackers, you'll be free.";
+
+ // Here we split it into lines.
+ $lyrics = explode( "\n", $lyrics );
diff --git a/wordpress-7.1-noupdate.patch b/wordpress-7.1-noupdate.patch
new file mode 100644
index 0000000..d327e71
--- /dev/null
+++ b/wordpress-7.1-noupdate.patch
@@ -0,0 +1,91 @@
+diff -up wordpress/wp-admin/includes/admin-filters.php.orig wordpress/wp-admin/includes/admin-filters.php
+--- wordpress/wp-admin/includes/admin-filters.php.orig 2026-03-09 00:49:37.395081000 +0100
++++ wordpress/wp-admin/includes/admin-filters.php 2026-08-25 07:30:05.010828032 +0200
+@@ -130,7 +130,6 @@ add_action( 'personal_options_update', '
+ add_action( 'load-plugins.php', 'wp_plugin_update_rows', 20 ); // After wp_update_plugins() is called.
+ add_action( 'load-themes.php', 'wp_theme_update_rows', 20 ); // After wp_update_themes() is called.
+
+-add_action( 'admin_notices', 'update_nag', 3 );
+ add_action( 'admin_notices', 'deactivated_plugins_notice', 5 );
+ add_action( 'admin_notices', 'paused_plugins_notice', 5 );
+ add_action( 'admin_notices', 'paused_themes_notice', 5 );
+diff -up wordpress/wp-admin/includes/class-core-upgrader.php.orig wordpress/wp-admin/includes/class-core-upgrader.php
+--- wordpress/wp-admin/includes/class-core-upgrader.php.orig 2026-02-13 19:34:41.944764000 +0100
++++ wordpress/wp-admin/includes/class-core-upgrader.php 2026-08-25 07:30:05.010951923 +0200
+@@ -277,6 +277,9 @@ class Core_Upgrader extends WP_Upgrader
+ * @return bool True if we should update to the offered version, otherwise false.
+ */
+ public static function should_update_to_version( $offered_ver ) {
++ // RPM: nether allow core update
++ return false;
++
+ require ABSPATH . WPINC . '/version.php'; // $wp_version; // x.y.z
+
+ $current_branch = implode( '.', array_slice( preg_split( '/[.-]/', $wp_version ), 0, 2 ) ); // x.y
+diff -up wordpress/wp-admin/includes/class-wp-automatic-updater.php.orig wordpress/wp-admin/includes/class-wp-automatic-updater.php
+--- wordpress/wp-admin/includes/class-wp-automatic-updater.php.orig 2026-07-29 10:01:50.858475000 +0200
++++ wordpress/wp-admin/includes/class-wp-automatic-updater.php 2026-08-25 07:30:05.011078018 +0200
+@@ -41,7 +41,7 @@ class WP_Automatic_Updater {
+ }
+
+ // More fine grained control can be done through the WP_AUTO_UPDATE_CORE constant and filters.
+- $disabled = defined( 'AUTOMATIC_UPDATER_DISABLED' ) && AUTOMATIC_UPDATER_DISABLED;
++ $disabled = !defined( 'AUTOMATIC_UPDATER_DISABLED' ) || AUTOMATIC_UPDATER_DISABLED;
+
+ /**
+ * Filters whether to entirely disable background updates.
+diff -up wordpress/wp-admin/includes/file.php.orig wordpress/wp-admin/includes/file.php
+--- wordpress/wp-admin/includes/file.php.orig 2026-07-29 10:01:50.858475000 +0200
++++ wordpress/wp-admin/includes/file.php 2026-08-25 07:30:05.011274367 +0200
+@@ -2270,7 +2270,7 @@ function WP_Filesystem( $args = false, $
+ */
+ function get_filesystem_method( $args = array(), $context = '', $allow_relaxed_file_ownership = false ) {
+ // Please ensure that this is either 'direct', 'ssh2', 'ftpext', or 'ftpsockets'.
+- $method = defined( 'FS_METHOD' ) ? FS_METHOD : false;
++ $method = defined( 'FS_METHOD' ) ? FS_METHOD : 'direct';
+
+ if ( ! $context ) {
+ $context = WP_CONTENT_DIR;
+diff -up wordpress/wp-admin/includes/update.php.orig wordpress/wp-admin/includes/update.php
+--- wordpress/wp-admin/includes/update.php.orig 2026-07-30 16:55:49.613388000 +0200
++++ wordpress/wp-admin/includes/update.php 2026-08-25 07:31:37.114050011 +0200
+@@ -382,12 +382,7 @@ function update_right_now_message() {
+ $cur = get_preferred_from_update_core();
+
+ if ( isset( $cur->response ) && 'upgrade' === $cur->response ) {
+- $msg .= sprintf(
+- '%s',
+- network_admin_url( 'update-core.php' ),
+- /* translators: %s: WordPress version number, or 'Latest' string. */
+- sprintf( __( 'Update to %s' ), $cur->current ? $cur->current : __( 'Latest' ) )
+- );
++ $msg .= '';
+ }
+ }
+
+diff -up wordpress/wp-includes/load.php.orig wordpress/wp-includes/load.php
+--- wordpress/wp-includes/load.php.orig 2026-08-07 21:13:51.810460000 +0200
++++ wordpress/wp-includes/load.php 2026-08-25 07:30:05.011640399 +0200
+@@ -1835,7 +1835,7 @@ function wp_is_file_mod_allowed( $contex
+ * @param bool $file_mod_allowed Whether file modifications are allowed.
+ * @param string $context The usage context.
+ */
+- return apply_filters( 'file_mod_allowed', ! defined( 'DISALLOW_FILE_MODS' ) || ! DISALLOW_FILE_MODS, $context );
++ return apply_filters( 'file_mod_allowed', defined( 'DISALLOW_FILE_MODS' ) && ! DISALLOW_FILE_MODS, $context );
+ }
+
+ /**
+diff -up wordpress/wp-includes/update.php.orig wordpress/wp-includes/update.php
+--- wordpress/wp-includes/update.php.orig 2026-07-06 23:09:52.376708000 +0200
++++ wordpress/wp-includes/update.php 2026-08-25 07:30:05.011769619 +0200
+@@ -1087,10 +1087,6 @@ function _maybe_update_themes() {
+ * @since 3.1.0
+ */
+ function wp_schedule_update_checks() {
+- if ( ! wp_next_scheduled( 'wp_version_check' ) && ! wp_installing() ) {
+- wp_schedule_event( time(), 'twicedaily', 'wp_version_check' );
+- }
+-
+ if ( ! wp_next_scheduled( 'wp_update_plugins' ) && ! wp_installing() ) {
+ wp_schedule_event( time(), 'twicedaily', 'wp_update_plugins' );
+ }
diff --git a/wordpress-7.1-remove-jshint-refs.patch b/wordpress-7.1-remove-jshint-refs.patch
new file mode 100644
index 0000000..61d3b6b
--- /dev/null
+++ b/wordpress-7.1-remove-jshint-refs.patch
@@ -0,0 +1,11 @@
+diff -up wordpress/wp-includes/script-loader.php.orig wordpress/wp-includes/script-loader.php
+--- wordpress/wp-includes/script-loader.php.orig 2026-08-25 07:26:03.212320361 +0200
++++ wordpress/wp-includes/script-loader.php 2026-08-25 07:26:08.488274508 +0200
+@@ -1205,7 +1205,6 @@ function wp_default_scripts( $scripts )
+ $scripts->add( 'wp-codemirror', '/wp-includes/js/codemirror/codemirror.min.js', array(), '5.65.20' );
+ $scripts->add( 'csslint', '/wp-includes/js/codemirror/csslint.js', array(), '1.0.5' );
+ $scripts->add( 'esprima', '/wp-includes/js/codemirror/esprima.js', array(), '4.0.1' ); // Deprecated.
+- $scripts->add( 'jshint', '/wp-includes/js/codemirror/fakejshint.js', array( 'esprima' ), '2.9.5' ); // Deprecated.
+ $scripts->add( 'jsonlint', '/wp-includes/js/codemirror/jsonlint.js', array(), '1.6.3' );
+ $scripts->add( 'htmlhint', '/wp-includes/js/codemirror/htmlhint.js', array(), '1.9.2' );
+ $scripts->add( 'htmlhint-kses', '/wp-includes/js/codemirror/htmlhint-kses.js', array( 'htmlhint' ) );
diff --git a/wordpress-httpd-conf b/wordpress-httpd-conf
index 5552c00..dbefe97 100644
--- a/wordpress-httpd-conf
+++ b/wordpress-httpd-conf
@@ -1,5 +1,23 @@
Alias /wordpress /usr/share/wordpress
+# Access is only allowed via local access
+# Change this once configured
+
AllowOverride Options
+ Require local
+
+
+
+ # Deny access to any php file in the uploads directory
+
+ Require all denied
+
+
+
+
+ # Deny access to any php file in the akismet directory
+
+ Require all denied
+
diff --git a/wordpress-minify.php b/wordpress-minify.php
new file mode 100644
index 0000000..d8e18c4
--- /dev/null
+++ b/wordpress-minify.php
@@ -0,0 +1,16 @@
+squeeze($in);
+if ($out) {
+ printf("+ minify from %s to %s: %2d%% of %6d\n",
+ basename($_SERVER['argv'][1]), basename($_SERVER['argv'][2]),
+ round(strlen($out)*100/strlen($in)), strlen($in));
+ file_put_contents($_SERVER['argv'][2], $out);
+} else {
+ exit(2);
+}
+
diff --git a/wordpress-nginx-conf b/wordpress-nginx-conf
new file mode 100644
index 0000000..e41cc6a
--- /dev/null
+++ b/wordpress-nginx-conf
@@ -0,0 +1,35 @@
+# Wordpress
+
+location = /wordpress {
+ alias /usr/share/wordpress/;
+}
+
+location /wordpress/ {
+ root /usr/share;
+ index index.php;
+
+ location ~ ^/wordpress/wp-content/uploads/(.+)\.php$ {
+ # Deny access to any php file in the uploads directory
+ deny all;
+ }
+ location ~ ^/wordpress/wp-content/plugins/akismet/(.+)\.php$ {
+ # Deny access to any php file in the akismet directory
+ deny all;
+ }
+
+ # Access is only allowed via local access
+ # Change this once configured
+ location ~ ^/wordpress/(.+\.php)$ {
+ allow 127.0.0.1;
+ allow ::1;
+ deny all;
+
+ try_files $uri =404;
+ fastcgi_intercept_errors on;
+ include fastcgi_params;
+ fastcgi_param SERVER_NAME $host;
+ fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
+ fastcgi_pass php-fpm;
+ }
+}
+
diff --git a/wordpress.spec b/wordpress.spec
index 9a60780..e2d9f03 100644
--- a/wordpress.spec
+++ b/wordpress.spec
@@ -1,86 +1,961 @@
-Summary: WordPress blogging software
-URL: http://www.wordpress.org
-Name: wordpress
-Version: 2.8.4
-Group: Applications/Publishing
-Release: 1%{?dist}
-License: GPLv2
-Source0: http://wordpress.org/%{name}-%{version}.tar.gz
-Source1: wordpress-httpd-conf
-Source2: README.fedora.wordpress
-BuildRoot: %{_tmppath}/%{name}-%{version}-%{release}-root-%(%{__id_u} -n)
-Requires: php >= 4.1.0, httpd, php-mysql
+# Fedora spec file for wordpress
+#
+# License: MIT
+# http://opensource.org/licenses/MIT
+#
+# Please preserve changelog entries
+#
+%global wp_content %{_datadir}/wordpress/wp-content
+
+%global upstream_version 7.1
+#global upstream_prever RC5
+#global upstream_lower rc5
+
+Summary: Blog tool and publishing platform
+URL: https://wordpress.org/
+Name: wordpress
+Version: %{upstream_version}%{?upstream_prever:~%upstream_lower}
+Release: 1%{?dist}
+# Wordpress is GPL-2.0-or-later
+# php-simplepie is BSD-3-Clause
+# php-getid3 is LGPL-3.0-or-later (or some others)
+# php-mailer is LGPL-2.1-only
+License: GPL-2.0-or-later AND BSD-3-Clause AND LGPL-3.0-or-later AND LGPL-2.1-only
+
+Source0: https://wordpress.org/%{name}-%{upstream_version}%{?upstream_prever:-%{upstream_prever}}.tar.gz
+Source1: wordpress-httpd-conf
+Source2: README.fedora.wordpress
+Source3: README.fedora.wordpress-mu
+Source4: wordpress-nginx-conf
+# To minify JS assets
+Source5: wordpress-minify.php
+
+# Patch out copyrighted text of Hello, Dolly
+# (and replace it with Free Software Song)
+Patch0: wordpress-6.8-hello.patch
+# Adjust tinymce's media plugin not to use its SWF plugin. This changes
+# 'p.getParam("flash_video_player_url",u.convertUrl(u.url+"/moxieplayer.swf"))'
+# to 'false'
+Patch3: wordpress-5.1-tinymce_noflash.patch
+# We drop the SWF files from mediaelement
+Patch4: wordpress-5.6-mediaelement_no_swf.patch
+# RPM configuration:
+# Path to installation
+# Disable auto-updater
+Patch5: wordpress-5.4-config.patch
+# RPM are readonly
+# disable version check and updated
+# change DISALLOW_FILE_MODS default value to true
+# ignore WP_AUTO_UPDATE_CORE (always false)
+Patch6: wordpress-7.1-noupdate.patch
+# Debian patch for jshint
+Patch8: wordpress-7.1-remove-jshint-refs.patch
+
+
BuildArch: noarch
+BuildRequires: php-cli
+BuildRequires: php-patchwork-jsqueeze
+BuildRequires: php(language) >= 7.2
+
+Requires: webserver
+Requires: php(httpd)
+Suggests: httpd
+# For directory ownership
+Requires: httpd-filesystem
+Requires: nginx-filesystem
+Requires: php(language) >= 7.2
+Requires: php-sodium
+Requires: php-ctype
+Requires: php-filter
+Requires: php-mysqli
+
+# From phpcompatinfo report for version 4.5.3
+Requires: php-curl
+Requires: php-dom
+Requires: php-exif
+Requires: php-fileinfo
+Requires: php-gd
+Requires: php-gettext
+Requires: php-iconv
+Requires: php-intl
+Requires: php-json
+Requires: php-libxml
+Requires: php-mbstring
+Requires: php-openssl
+Requires: php-simplexml
+Requires: php-xml
+Requires: php-xmlreader
+Requires: php-zip
+Requires: php-zlib
+Requires: httpd
+# Unbundled
+Requires: /etc/pki/ca-trust/extracted/pem/tls-ca-bundle.pem
+# Bundled
+# grep "SIMPLEPIE_VERSION'" wordpress/wp-includes/class-simplepie.php
+Provides: bundled(php-simplepie) = 1.9.0
+# grep ' VERSION ' wordpress/wp-includes/ID3/getid3.php
+Provides: bundled(php-getid3) = 1.9.25
+# grep ' VERSION ' wordpress/wp-includes/PHPMailer/PHPMailer.php
+Provides: bundled(php-phpmailer) = 7.1.1
+Provides: wordpress-mu = %{version}-%{release}
+Obsoletes: wordpress-mu < 2.9.3
+
%description
Wordpress is an online publishing / weblog package that makes it very easy,
almost trivial, to get information out to people on the web.
+Important information in %{_pkgdocdir}/README.fedora
+
+
%prep
%setup -q -n wordpress
-# disable wp_version_check, updates are always installed via rpm
-sed -i -e "s,\(.*\)'wp_version_check'\(.*\),#\1'wp_version_check'\2,g" \
- wp-includes/update.php
-# disable update_nag() function
-sed -i -e "s,\(.*\)'update_nag'\(.*\),#\1'update_nag'\2,g; \
- s,\(.*\)\$msg .=\(.*\),\1\$msg .= '';,g;" \
- wp-admin/includes/update.php
+
+# swfupload can just die in its entirety
+rm -rf wp-includes/js/swfupload
+
+# remove .htaccess, protected by httpd config file
+rm wp-content/plugins/akismet/.htaccess
+
+# only for PHP < 7.0 without random_int
+rm -rf wp-includes/random_compat
+# only for PHP < 7.2 without sodium_crypto_box
+rm -rf wp-includes/sodium_compat
+
+%patch -P0 -p1 -b .dolly
+%patch -P3 -p1
+# Adjust mediaelement not to use its SWF
+%patch -P4 -p1
+%patch -P8 -p1
+
+# We patch .js files, so minify them
+php %{SOURCE5} \
+ wp-includes/js/tinymce/plugins/media/plugin.js \
+ wp-includes/js/tinymce/plugins/media/plugin.min.js
+php %{SOURCE5} \
+ wp-includes/js/mediaelement/mediaelement-and-player.js \
+ wp-includes/js/mediaelement/mediaelement-and-player.min.js
+php %{SOURCE5} \
+ wp-includes/js/mediaelement/mediaelement.js \
+ wp-includes/js/mediaelement/mediaelement.min.js
+
+# Re-Generated the archive
+arc=wp-includes/js/tinymce/wp-tinymce.js
+grep "^// Source" $arc | while read a b c
+do
+ if [ -f $c ]; then
+ echo -e "\n$a $b $c"
+ cat $c
+ else
+ exit 1
+ fi
+done >$arc.tmp
+if [ -s $arc.tmp ]; then
+ gzip -c $arc > $arc.gz
+ ls -l $arc*
+ mv $arc.tmp $arc
+else
+ exit 1
+fi
+
+# Create RPM configuration
+sed -e 's/\r//' wp-config-sample.php >wp-config.php
+%patch -P5 -p1
+%patch -P6 -p1
+
# fix file encoding
sed -i -e 's/\r//' license.txt
+: Bundled library versions
+grep ' VERSION ' wp-includes/SimplePie/src/SimplePie.php
+grep ' VERSION ' wp-includes/ID3/getid3.php
+grep ' VERSION ' wp-includes/PHPMailer/PHPMailer.php
+
+
+%build
+
%install
-mkdir -p ${RPM_BUILD_ROOT}%{_datadir}/wordpress
-mkdir -p ${RPM_BUILD_ROOT}%{_sysconfdir}/wordpress
+# Apache configuration
install -m 0644 -D -p %{SOURCE1} ${RPM_BUILD_ROOT}%{_sysconfdir}/httpd/conf.d/wordpress.conf
+
+install -m 0644 -D -p %{SOURCE4} ${RPM_BUILD_ROOT}%{_sysconfdir}/nginx/default.d/wordpress.conf
+
+# Application
+mkdir -p ${RPM_BUILD_ROOT}%{_datadir}/wordpress
cp -pr * ${RPM_BUILD_ROOT}%{_datadir}/wordpress
-cat wp-config-sample.php | sed -e "s|dirname(__FILE__).'/'|'/usr/share/wordpress/'|g" > \
- ${RPM_BUILD_ROOT}%{_sysconfdir}/wordpress/wp-config.php
+
+# Configuration
+install -m 0644 -D wp-config.php ${RPM_BUILD_ROOT}%{_sysconfdir}/wordpress/wp-config.php
/bin/ln -sf ../../../etc/wordpress/wp-config.php ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-config.php
+
/bin/cp %{SOURCE2} ./README.fedora
+/bin/cp %{SOURCE3} ./README.fedora-multiuser
+
+# Create additional wp-content directories so we can own them
+install -d ${RPM_BUILD_ROOT}%{wp_content}/{plugins,themes,upgrade,uploads}
+
# Remove empty files to make rpmlint happy
-find ${RPM_BUILD_ROOT} -type f -empty -exec rm -f {} \;
+find ${RPM_BUILD_ROOT} -type f -empty -exec rm -vf {} \;
# These are docs, remove them from here, docify them later
rm -f ${RPM_BUILD_ROOT}%{_datadir}/wordpress/{license.txt,readme.html}
-%clean
-rm -rf ${RPM_BUILD_ROOT}
+# Remove bundled ca-bundle.crt
+rm ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/certificates/ca-bundle.crt
+ln -s %{_sysconfdir}/pki/ca-trust/extracted/pem/tls-ca-bundle.pem \
+ ${RPM_BUILD_ROOT}%{_datadir}/wordpress/wp-includes/certificates/ca-bundle.crt
+
+# Remove backup copies of patches
+find ${RPM_BUILD_ROOT} \( -name \*.dolly -o -name \*.rhbz522897 -o -name \*.orig \) \
+ -print -delete
+
+
+%pretrans -p
+-- Remove link to system library
+path = "%{_datadir}/wordpress/wp-includes/PHPMailer"
+st = posix.stat(path)
+if st and st.type == "link" then
+ os.remove(path)
+end
+
%files
-%defattr(-,root,root,-)
%config(noreplace) %{_sysconfdir}/httpd/conf.d/wordpress.conf
+%config(noreplace) %{_sysconfdir}/nginx/default.d/wordpress.conf
%dir %{_datadir}/wordpress
%{_datadir}/wordpress/wp-admin
-%{_datadir}/wordpress/wp-content
%{_datadir}/wordpress/wp-includes
%{_datadir}/wordpress/index.php
-%doc license.txt
+%dir %{wp_content}/
+%{wp_content}/index.php
+%dir %attr(2775,apache,ftp) %{wp_content}/plugins
+%dir %attr(2775,apache,ftp) %{wp_content}/themes
+%dir %attr(2775,apache,ftp) %{wp_content}/upgrade
+%dir %attr(2775,apache,ftp) %{wp_content}/uploads
+%{wp_content}/plugins/*
+%{wp_content}/themes/*
+%{!?_licensedir:%global license %%doc}
+%license license.txt
%doc readme.html
%doc README.fedora
-%{_datadir}/wordpress/wp-atom.php
-%{_datadir}/wordpress/wp-app.php
-%{_datadir}/wordpress/wp-blog-header.php
-%{_datadir}/wordpress/wp-comments-post.php
-%{_datadir}/wordpress/wp-commentsrss2.php
-%{_datadir}/wordpress/wp-config-sample.php
-%{_datadir}/wordpress/wp-config.php
-%config(noreplace) %{_sysconfdir}/wordpress/wp-config.php
-%{_datadir}/wordpress/wp-cron.php
-%{_datadir}/wordpress/wp-feed.php
-%{_datadir}/wordpress/wp-links-opml.php
-%{_datadir}/wordpress/wp-load.php
-%{_datadir}/wordpress/wp-login.php
-%{_datadir}/wordpress/wp-mail.php
-%{_datadir}/wordpress/wp-pass.php
-%{_datadir}/wordpress/wp-rdf.php
-%{_datadir}/wordpress/wp-register.php
-%{_datadir}/wordpress/wp-rss.php
-%{_datadir}/wordpress/wp-rss2.php
-%{_datadir}/wordpress/wp-settings.php
-%{_datadir}/wordpress/wp-trackback.php
+%doc README.fedora-multiuser
+%{_datadir}/wordpress/wp-*.php
+%attr(750,root,apache) %dir %{_sysconfdir}/wordpress
+%attr(640,root,apache) %config(noreplace) %{_sysconfdir}/wordpress/wp-config.php
%{_datadir}/wordpress/xmlrpc.php
-%dir %{_sysconfdir}/wordpress
+
%changelog
+* Tue Aug 25 2026 Remi Collet -7.1-1
+- WordPress 7.1 “Mary Lou”
+
+* Thu Aug 13 2026 Remi Collet -7.0.4-1
+- WordPress 7.0.4 Release
+
+* Fri Aug 7 2026 Remi Collet -7.0.3-1
+- WordPress 7.0.3 Release
+
+* Tue Jul 21 2026 Remi Collet -7.0.2-1
+- WordPress 7.0.2 Release
+
+* Fri Jul 17 2026 Fedora Release Engineering - 7.0.1-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_45_Mass_Rebuild
+
+* Fri Jul 10 2026 Remi Collet -7.0.1-1
+- WordPress 7.0.1 Maintenance Release
+
+* Tue May 26 2026 Remi Collet -7.0-1
+- WordPress 7.0 “Armstrong”
+
+* Thu Mar 12 2026 Remi Collet - 6.9.4-1
+- WordPress 6.9.4 Release
+
+* Wed Mar 11 2026 Remi Collet - 6.9.3-1
+- WordPress 6.9.3 Release
+
+* Wed Feb 4 2026 Remi Collet - 6.9.1-1
+- WordPress 6.9.1 Maintenance Release
+
+* Sat Jan 17 2026 Fedora Release Engineering - 6.9-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild
+
+* Wed Dec 3 2025 Remi Collet - 6.9-1
+- WordPress 6.9 “Gene”
+
+* Wed Oct 1 2025 Remi Collet - 6.8.3-1
+- WordPress 6.8.3 Security Release
+
+* Mon Jul 28 2025 Remi Collet - 6.8.2-3
+- fix system certificates path
+
+* Fri Jul 25 2025 Fedora Release Engineering - 6.8.2-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild
+
+* Tue Jul 22 2025 Remi Collet - 6.8.2-1
+- WordPress 6.8.2 Maintenance Release
+
+* Mon May 5 2025 Remi Collet - 6.8.1-1
+- WordPress 6.8.1 Maintenance Release
+
+* Wed Apr 16 2025 Remi Collet - 6.8-1
+- WordPress 6.8 “Cecil”
+
+* Wed Feb 12 2025 Remi Collet - 6.7.2-1
+- WordPress 6.7.2 Maintenance Release
+
+* Sun Jan 19 2025 Fedora Release Engineering - 6.7.1-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
+
+* Fri Nov 22 2024 Remi Collet - 6.7.1-1
+- WordPress 6.7.1 Maintenance Release
+
+* Wed Nov 13 2024 Remi Collet - 6.7-1
+- WordPress 6.7 “Rollins”
+
+* Wed Sep 11 2024 Remi Collet - 6.6.2-1
+- WordPress 6.6.2 Maintenance Release
+
+* Wed Jul 24 2024 Remi Collet - 6.6.1-1
+- WordPress 6.6.1 Maintenance Release
+
+* Sat Jul 20 2024 Fedora Release Engineering - 6.6-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
+
+* Wed Jul 17 2024 Remi Collet - 6.6-1
+- WordPress 6.6 “Dorsey”
+
+* Tue Jul 2 2024 Remi Collet - 6.5.5-1
+- WordPress 6.4.2 Maintenance & Security Release
+
+* Thu Jun 6 2024 Remi Collet - 6.5.4-1
+- WordPress 6.5.4 Maintenance Release
+
+* Mon May 13 2024 Remi Collet - 6.5.3-1
+- WordPress 6.5.3 Maintenance Release
+
+* Wed Apr 10 2024 Remi Collet - 6.5.2-1
+- WordPress 6.5.2 Maintenance and Security Release
+
+* Wed Apr 3 2024 Remi Collet - 6.5-1
+- WordPress 6.5 “Regina”
+
+* Thu Feb 1 2024 Remi Collet - 6.4.3-1
+- WordPress 6.4.3 Maintenance & Security Release
+
+* Sat Jan 27 2024 Fedora Release Engineering - 6.4.2-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
+
+* Thu Dec 7 2023 Remi Collet - 6.4.2-1
+- WordPress 6.4.2 Maintenance & Security Release
+
+* Thu Nov 9 2023 Remi Collet - 6.4.1-1
+- WordPress 6.4.1 Maintenance Release
+
+* Wed Nov 8 2023 Remi Collet - 6.4-1
+- WordPress 6.4 “Shirley”
+
+* Mon Oct 16 2023 Remi Collet - 6.3.2-1
+- WordPress 6.3.2 – Maintenance and Security release
+
+* Thu Aug 31 2023 Remi Collet - 6.3.1-1
+* WordPress 6.3.1 Maintenance Release
+
+* Sun Aug 20 2023 Remi Collet - 6.3-1
+- WordPress 6.3 “Lionel”
+
+* Sat Jul 22 2023 Fedora Release Engineering - 6.2.2-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
+
+* Sun May 21 2023 Remi Collet - 6.2.2-1
+- WordPress 6.2.2 Security Release
+
+* Wed May 17 2023 Remi Collet - 6.2.1-1
+- WordPress 6.2.1 Maintenance & Security Release
+
+* Thu Mar 30 2023 Remi Collet - 6.2-1
+- WordPress 6.2 “Dolphy”
+- use SPDX license IDs
+
+* Sat Jan 21 2023 Fedora Release Engineering - 6.1.1-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
+
+* Wed Nov 16 2022 Remi Collet - 6.1.1-1
+- WordPress 6.1.1 Maintenance Release
+
+* Wed Nov 2 2022 Remi Collet - 6.1-1
+- WordPress 6.1 “Misha”
+
+* Tue Oct 18 2022 Remi Collet - 6.0.3-1
+- WordPress 6.0.3 Security Release
+
+* Thu Sep 8 2022 Remi Collet - 6.0.2-1
+- WordPress 6.0.2 Security and Maintenance Release
+
+* Sat Jul 23 2022 Fedora Release Engineering - 6.0.1-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
+
+* Wed Jul 13 2022 Remi Collet - 6.0.1-1
+- WordPress 6.0.1 Maintenance Release
+
+* Wed May 25 2022 Remi Collet - 6.0-1
+- WordPress 6.0 “Arturo”
+
+* Wed Apr 6 2022 Remi Collet - 5.9.3-1
+- WordPress 5.9.3 Maintenance Release
+
+* Fri Mar 11 2022 Remi Collet - 5.9.2-1
+- WordPress 5.9.2 Security & Maintenance Release
+
+* Wed Feb 23 2022 Remi Collet - 5.9.1-1
+- WordPress 5.9.1 Maintenance Release
+
+* Wed Jan 26 2022 Remi Collet - 5.9-1
+- WordPress 5.9 Josephine
+
+* Sat Jan 22 2022 Fedora Release Engineering - 5.8.3-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
+
+* Fri Jan 7 2022 Remi Collet - 5.8.3-1
+- WordPress 5.8.3 Security Release
+
+* Tue Dec 7 2021 Remi Collet - 5.8.2-2
+- use bundled libraries
+
+* Thu Nov 11 2021 Remi Collet - 5.8.2-1
+- WordPress 5.8.2 Security and Maintenance Release
+
+* Thu Sep 9 2021 Remi Collet - 5.8.1-1
+- WordPress 5.8.1 Security and Maintenance Release
+
+* Fri Jul 23 2021 Fedora Release Engineering - 5.8-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
+
+* Wed Jul 21 2021 Remi Collet - 5.8-1
+- WordPress 5.8 Tatum
+
+* Thu May 13 2021 Remi Collet - 5.7.2-1
+- WordPress 5.7.2 Security Release
+
+* Thu Apr 15 2021 Remi Collet - 5.7.1-1
+- WordPress 5.7.1 Security and Maintenance Release
+
+* Wed Mar 10 2021 Remi Collet - 5.7-1
+- WordPress 5.7 “Esperanza”
+
+* Tue Feb 23 2021 Remi Collet - 5.6.2-1
+- WordPress 5.6.2 Maintenance Release
+
+* Fri Feb 5 2021 Remi Collet - 5.6.1-1
+- WordPress 5.6.1 Maintenance Release
+
+* Wed Jan 27 2021 Fedora Release Engineering - 5.6-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
+
+* Wed Dec 9 2020 Remi Collet - 5.6-1
+- WordPress 5.6 “Simone”
+
+* Sat Oct 31 2020 Remi Collet - 5.5.3-1
+- WordPress 5.5.3 Maintenance Release
+
+* Fri Oct 30 2020 Remi Collet - 5.5.2-1
+- WordPress 5.5.2 Security and Maintenance Release
+
+* Tue Oct 20 2020 Remi Collet - 5.5.1-2
+- Change FS_METHOD default to 'direct' to allow enabling FILE_MODS #1889644
+
+* Wed Sep 2 2020 Remi Collet - 5.5.1-1
+- WordPress 5.5.1 Maintenance Release
+
+* Wed Aug 12 2020 Remi Collet - 5.5-1
+- WordPress 5.5 “Eckstine”
+- requires php-phpmailer6 instead of old php-PHPMailer
+
+* Wed Jul 29 2020 Fedora Release Engineering - 5.4.2-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
+
+* Thu Jun 11 2020 Remi Collet - 5.4.2-1
+- WordPress 5.4.2 Security and Maintenance Release
+
+* Thu Apr 30 2020 Remi Collet - 5.4.1-1
+- WordPress 5.4.1 Security and Maintenance Release
+
+* Wed Apr 1 2020 Remi Collet - 5.4-1
+- WordPress 5.4 “Adderley”
+
+* Mon Mar 30 2020 Remi Collet - 5.4~rc5-1
+- WordPress 5.4 RC 5
+
+* Wed Mar 25 2020 Remi Collet - 5.4~rc4-1
+- WordPress 5.4 RC 4
+
+* Fri Jan 31 2020 Fedora Release Engineering - 5.3.2-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
+
+* Thu Dec 19 2019 Remi Collet - 5.3.2-1
+- WordPress 5.3.2 Maintenance Release
+
+* Fri Dec 13 2019 Remi Collet - 5.3.1-1
+- WordPress 5.3.1 Security and Maintenance Release
+
+* Wed Nov 13 2019 Remi Collet - 5.3-1
+- WordPress 5.3 “Kirk”
+
+* Tue Oct 15 2019 Remi Collet - 5.2.4-1
+- WordPress 5.2.4 Security Release
+
+* Thu Sep 5 2019 Remi Collet - 5.2.3-1
+- WordPress 5.2.3 Security and Maintenance Release
+
+* Sat Jul 27 2019 Fedora Release Engineering - 5.2.2-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
+
+* Wed Jun 19 2019 Remi Collet - 5.2.2-1
+- WordPress 5.2.2 Maintenance Release
+
+* Wed May 22 2019 Remi Collet - 5.2.1-1
+- WordPress 5.2.1 Maintenance Release
+
+* Wed May 8 2019 Remi Collet - 5.2.0-1
+- WordPress 5.2 “Jaco”
+
+* Fri Apr 26 2019 Remi Collet - 5.2.0~rc1-1
+- WordPress 5.2 RC 1
+
+* Wed Apr 17 2019 Remi Collet - 5.2.0~beta3-1
+- WordPress 5.2 Beta 3
+
+* Tue Apr 9 2019 Remi Collet - 5.2.0~beta2-1
+- WordPress 5.2 Beta 2
+
+* Thu Mar 28 2019 Remi Collet - 5.2.0~beta1-1
+- WordPress 5.2 Beta 1
+- raise dependency on PHP 7.2
+
+* Fri Mar 22 2019 Remi Collet - 5.1.1-4
+- fix wp-tinymce.js is missing, wp-tinymce.js.gz is empty #1691524
+
+* Wed Mar 13 2019 Remi Collet - 5.1.1-1
+- WordPress 5.1.1 Security and Maintenance Release
+
+* Fri Feb 22 2019 Remi Collet - 5.1-1
+- WordPress 5.1 “Betty”
+
+* Thu Feb 21 2019 Remi Collet - 5.1~RC2-1
+- WordPress 5.1-RC2
+
+* Sun Feb 03 2019 Fedora Release Engineering - 5.0.3-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
+
+* Fri Jan 11 2019 Remi Collet - 5.0.3-1
+- WordPress 5.0.3 Maintenance Release
+
+* Thu Dec 20 2018 Remi Collet - 5.0.2-1
+- WordPress 5.0.2 Maintenance Release
+
+* Thu Dec 13 2018 Remi Collet - 5.0.1-1
+- WordPress 5.0.1 Security Release
+
+* Wed Dec 12 2018 Remi Collet - 5.0-1
+- WordPress 5.0 “Bebo”
+
+* Fri Aug 03 2018 Kevin Fenzi - 4.9.8-1
+- Update to 4.9.8. Fixes bug #1611877
+
+* Sat Jul 14 2018 Fedora Release Engineering - 4.9.7-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
+
+* Thu Jul 05 2018 Kevin Fenzi - 4.9.7-1
+- Update to 4.9.7 security update. Fixes bug #1598612
+- Fixes CVE-2018-12895 bugs #1595584 and #1595585
+
+* Fri May 18 2018 Kevin Fenzi - 4.9.6-1
+- Update to 4.9.6. Fixes bug #1579584
+
+* Wed Apr 4 2018 Remi Collet - 4.9.5-1
+- WordPress 4.9.5 Security and Maintenance Release
+
+* Wed Feb 7 2018 Remi Collet - 4.9.4-1
+- WordPress 4.9.4 Maintenance Release
+
+* Wed Jan 17 2018 Remi Collet - 4.9.2-1
+- WordPress 4.9.2 Security and Maintenance Release
+- drop non-free jshint.js file #1528765
+
+* Thu Nov 30 2017 Remi Collet - 4.9.1-1
+- WordPress 4.9.1 Security and Maintenance Release
+
+* Thu Nov 16 2017 Remi Collet - 4.9-1
+- WordPress 4.9 “Tipton”
+- minify patched JS files
+
+* Tue Oct 31 2017 Kevin Fenzi - 4.8.3-1
+- Update to 4.8.3. Security release. Fixes bug #1508255
+
+* Wed Sep 20 2017 Remi Collet - 4.8.2-1
+- Update to 4.8.2 Security and Maintenance Release
+
+* Thu Aug 3 2017 Remi Collet - 4.8.1-1
+- Update to 4.8.1 Maintenance Release.
+
+* Thu Jul 27 2017 Fedora Release Engineering - 4.8-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
+
+* Fri Jun 9 2017 Remi Collet - 4.8-1
+- WordPress 4.8 “Evans”
+
+* Wed May 17 2017 Remi Collet - 4.7.5-1
+- WordPress 4.7.5 Security and Maintenance Release
+
+* Wed May 10 2017 Remi Collet - 4.7.4-2
+- protect .phar from being executed from uploads directory
+
+* Sat Apr 22 2017 Kevin Fenzi - 4.7.4-1
+- Update to 4.7.4. Maintenance Release.
+
+* Tue Mar 7 2017 Remi Collet - 4.7.3-1
+- WordPress 4.7.3 Security and Maintenance Release
+
+* Sat Feb 11 2017 Fedora Release Engineering - 4.7.2-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
+
+* Fri Jan 27 2017 Remi Collet - 4.7.2-1
+- WordPress 4.7.2 Security Release
+
+* Thu Jan 12 2017 Remi Collet - 4.7.1-1
+- WordPress 4.7.1 Security and Maintenance Release
+
+* Wed Dec 7 2016 Remi Collet - 4.7.0-1
+- WordPress 4.7 “Vaughan”
+
+* Thu Sep 8 2016 Remi Collet - 4.6.1-1
+- WordPress 4.6.1 Security and Maintenance Release
+
+* Sat Sep 3 2016 Remi Collet - 4.6-2
+- WordPress 4.6 “Pepper”
+- fix directory permissions #1305687
+
+* Mon Jun 27 2016 Remi Collet - 4.5.3-2
+- add patch to drop ereg dependency, see
+ https://core.trac.wordpress.org/ticket/37194
+
+* Wed Jun 22 2016 Remi Collet - 4.5.3-1
+- WordPress 4.5.3 Maintenance and Security Release
+
+* Sat May 14 2016 Remi Collet - 4.5.2-2
+- never bundle ca-bundle.crt (EL-5)
+- provide nginx configuration (fedora)
+- drop mandatory dependency on httpd (suggested) #1336091
+- protect php files in uploads directory
+
+* Tue May 10 2016 Remi Collet - 4.5.2-1
+- WordPress 4.5.2 Security Release
+
+* Wed Apr 27 2016 Remi Collet - 4.5.1-1
+- WordPress 4.5.1 Maintenance Release
+
+* Wed Apr 13 2016 Remi Collet - 4.5-1
+- WordPress 4.5 “Coleman”
+
+* Fri Mar 25 2016 Remi Collet - 4.5-0.1.RC1
+- WordPress 4.5 Release Candidate
+
+* Wed Feb 3 2016 Remi Collet - 4.4.2-1
+- WordPress 4.4.2 Security and Maintenance Release
+
+* Thu Jan 7 2016 Remi Collet - 4.4.1-1
+- WordPress 4.4.1 Security and Maintenance Release
+
+* Wed Dec 9 2015 Remi Collet - 4.4-1
+- WordPress 4.4 “Clifford”
+
+* Wed Sep 16 2015 Remi Collet - 4.3.1-1
+- WordPress 4.3.1 Security and Maintenance Release
+
+* Wed Aug 26 2015 Remi Collet - 4.3-1
+- WordPress 4.3 “Billie”
+
+* Tue Aug 4 2015 Remi Collet - 4.2.4-1
+- WordPress 4.2.4 Security and Maintenance Release
+
+* Fri Jul 24 2015 Remi Collet - 4.2.3-1
+- WordPress 4.2.3 Security and Maintenance Release
+
+* Fri Jun 19 2015 Fedora Release Engineering - 4.2.2-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild
+
+* Thu May 7 2015 Remi Collet - 4.2.2-1
+- WordPress 4.2.2 Security and Maintenance Release
+
+* Tue Apr 28 2015 Remi Collet - 4.2.1-1
+- WordPress 4.2.1 Security Release
+
+* Fri Apr 24 2015 Remi Collet - 4.2-1
+- WordPress 4.2 “Powell”
+
+* Thu Apr 23 2015 Remi Collet - 4.1.2-1
+- WordPress 4.1.2 Security Release
+
+* Thu Feb 19 2015 Remi Collet - 4.1.1-1
+- WordPress 4.1.1 Maintenance Release
+
+* Mon Dec 22 2014 Remi Collet - 4.1-1
+- WordPress 4.1 “Dinah”
+
+* Fri Nov 21 2014 Remi Collet - 4.0.1-1
+- WordPress 4.0.1 Security Release
+
+* Tue Sep 30 2014 Remi Collet - 4.0-3
+- use system php-getid3 when available #1145574
+
+* Mon Sep 8 2014 Remi Collet - 4.0-1
+- WordPress 4.0 “Benny”
+
+* Fri Aug 8 2014 Remi Collet - 3.9.2-3
+- config dir only readable by apache group, better fix for #1124582
+- fix license handling
+
+* Thu Aug 7 2014 Remi Collet - 3.9.2-2
+- update to 3.9.2 Security Release #1127547
+- config file only readable by apache user (httpd or php-fpm) #1124582
+
+* Sun Jun 08 2014 Fedora Release Engineering - 3.9.1-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
+
+* Fri May 9 2014 Remi Collet - 3.9.1-1
+- update to 3.9.1 Maintenance Release
+
+* Wed May 7 2014 Remi Collet - 3.9-1
+- update to 3.9 “Smith”
+
+* Tue Apr 15 2014 Remi Collet - 3.8.3-1
+- update to 3.8.3 Maintenance Release
+ http://wordpress.org/news/2014/04/wordpress-3-8-3/
+
+* Wed Apr 9 2014 Remi Collet - 3.8.2-1
+- update to 3.8.2 Security Release
+- fix privilege escalation issue CVE-2014-0165
+- fix authentication bypass issue CVE-2014-0166
+
+* Sat Jan 25 2014 Remi Collet - 3.8.1-3
+- ignore WP_AUTO_UPDATE_CORE (always false)
+
+* Fri Jan 24 2014 Remi Collet - 3.8.1-2
+- comment provided configuration about auto-updater
+- disable auto-updater on default configuration #1057521
+- switch some sed to patch (more robust)
+
+* Thu Jan 23 2014 Adam Williamson - 3.8.1-1
+- new upstream release 3.8.1 (bugfixes)
+
+* Mon Dec 16 2013 Remi Collet - 3.8-1
+- update to 3.8 “Parker” #1043104
+- link to README.fedora in package description
+- add note about optional packages #1037516
+- add php dependencies: ereg, ftp, gd, xml
+- del php dependencies: pdo, reflection
+
+* Wed Oct 30 2013 Remi Collet - 3.7.1-1
+- update to 3.7.1 (bugfixes)
+
+* Fri Oct 25 2013 Remi Collet - 3.7-1
+- update to 3.7
+- requires ca-certificates for ca-bundle.crt
+
+* Thu Sep 12 2013 Paul Wouters - 3.6.1-1
+- update to 3.6.1, various bugs and security fixes:
+ CVE-2013-4338 CVE-2013-4339 CVE-2013-4340
+
+* Thu Aug 22 2013 Adam Williamson - 3.6.0-1
+- update to 3.6.0
+- drop pre-compiled Flash and Silverlight binaries - #1000267
+
+* Sun Aug 04 2013 Fedora Release Engineering - 3.5.2-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
+
+* Mon Jun 24 2013 Remi Collet - 3.5.2-1
+- version 3.5.2, various bug and security fixes:
+ CVE-2013-2173 CVE-2013-2199 CVE-2013-2200 CVE-2013-2201
+ CVE-2013-2202 CVE-2013-2203 CVE-2013-2204
+
+* Tue Feb 12 2013 Remi Collet - 3.5.1-2
+- provides POP3 class #905867
+ POP3 is not from PHPMailer, but from SquirrelMail
+
+* Wed Jan 30 2013 Remi Collet - 3.5.1-1.1
+- fix simplepie links (for all branches)
+
+* Wed Jan 30 2013 Remi Collet - 3.5.1-1
+- version 3.5.1, various bug and security fixes:
+ CVE-2013-0235, CVE-2013-0236 and CVE-2013-0237
+- drop -f option from rm to break build if
+ upstream archive content change
+- protect akismet content (from upstream .htaccess)
+
+* Wed Jan 2 2013 Remi Collet - 3.5-3
+- fix links to system PHPMailer library
+
+* Sun Dec 16 2012 Remi Collet - 3.5-2
+- fix use of system Simplepie
+- give access from local (httpd 2.4)
+
+* Wed Dec 12 2012 Matěj Cepl - 3.5-1
+- New upstream release.
+
+* Tue Dec 04 2012 Matěj Cepl - 3.5-0.5.RC3
+- New upstream release candidate.
+
+* Fri Nov 30 2012 Matěj Cepl - 3.5-0.5.RC2
+- New upstream release candidate.
+
+* Sat Nov 24 2012 Matěj Cepl - 3.5-0.5.RC1
+- New upstream release candidate.
+
+* Tue Nov 13 2012 Matěj Cepl - 3.5-0.4.beta3
+- New upstream beta3 version
+
+* Mon Oct 29 2012 Remi Collet - 3.5-0.3.beta2
+- use system PHPMailer
+- requires needed php extensions
+
+* Sat Oct 13 2012 Matěj Cepl - 3.5-0.2.beta2
+- New upstream beta2 version
+
+* Thu Oct 04 2012 Matěj Cepl - 3.5-0.2.beta1
+- New upstream beta1 version
+- Don’t even bother with removing gettext.php ... it is not used anymore
+
+* Thu Sep 06 2012 Matej Cepl - 3.4.2-2
+- Upstream security update.
+
+* Sun Jul 22 2012 Fedora Release Engineering - 3.4.1-2
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
+
+* Thu Jun 28 2012 Matej Cepl - 3.4.1-1
+- New upstream release. Just improvements and security issues.
+
+* Wed Jun 13 2012 Matej Cepl - 3.4-1
+- New upstream release. The main changes from the upstream
+ release notes:
+ * theme customizer
+ * XML-RPC themes and API improvements
+
+* Tue Jun 12 2012 Matej Cepl - 3.4-0.2.RC3
+- They still haven’t released.
+
+* Thu Jun 07 2012 Matej Cepl - 3.4-0.2.RC2
+- And yet another release candidate.
+
+* Wed May 30 2012 Matej Cepl - 3.4-0.2.RC1
+- We have a release candidate now.
+
+* Thu May 03 2012 'Matej Cepl ' - 3.4-0.2.beta4
+- New week, new upstream beta. Less drama than last time.
+
+* Mon Apr 23 2012 'Matěj Cepl ' - 3.4-0.2.beta3
+- And yet another upstream beta (fixes CVE-2011-0700 and
+ CVE-2011-0701)
+
+* Mon Apr 16 2012 Matěj Cepl - 3.4-0.2.beta2
+- And yet another upstream beta
+
+* Thu Apr 05 2012 'Matej Cepl ' - 3.4-0.1.beta1
+- New upstream beta release (just for Rawhide, to be sure we build)
+
+* Wed Jan 04 2012 'Matej Cepl ' - 3.3.1-1
+- Security (XSS) and maintenance upstream release.
+
+* Tue Dec 13 2011 'Matěj Cepl ' - 3.3-1
+- New upstream release.
+
+* Wed Dec 07 2011 'Matěj Cepl ' - 3.3-0.5.RC2
+- ... and one day after I upgraded to RC1, we have new RC2 ;)
+
+* Tue Dec 06 2011 'Matěj Cepl ' - 3.3-0.4.RC1
+- Cool we are on RC1!
+
+* Thu Nov 24 2011 'Matěj Cepl ' - 3.3-0.3.beta4
+- Another upstream beta release (now hopefully, really close to RC)
+
+* Fri Nov 11 2011 'Matěj Cepl ' - 3.3-0.3.beta3
+- Fix version requirement for php (Closes #753192)
+
+* Wed Nov 09 2011 'Matěj Cepl ' - 3.3-0.2.beta3
+- Another upstream beta release.
+
+* Thu Oct 20 2011 'Matěj Cepl ' - 3.3-0.1.beta2
+- New upstream beta release (just for Rawhide, to be sure we build)
+
+* Sat Jul 30 2011 Matěj Cepl - 3.2.1-2
+- Rebuilt against new libraries.
+
+* Wed Jul 13 2011 Matěj Cepl - 3.2.1-1
+- New upstream release. Small fixes missed in 3.2.
+
+* Tue Jul 05 2011 Matěj Cepl - 3.2-1
+- New upstream release.
+
+* Wed Jun 29 2011 Matěj Cepl - 3.2-0.1.RC3
+- Updated prerelease version (security and minor fixes).
+
+* Sun Jun 19 2011 Matěj Cepl - 3.2-0.1.RC1
+- Prerelease version.
+
+* Thu Jun 02 2011 Matěj Cepl - 3.1.3-3
+- Actually, we just don't need gettext.php at all, it is provided by
+ php itself. Just remove the file, don't make a symlink.
+- revert back to wp-content in /usr/share/wordpress, I am not able to make it
+ work. Not fixing BZ 522897.
+
+* Wed Jun 01 2011 Matěj Cepl - 3.1.3-2
+- Fix old FSF address and Summary to make rpmlint happy.
+- Make wp-content directory owned by apache:apache
+- Correctly Provides/Obsoletes (with versions)
+
+* Wed May 25 2011 Matěj Cepl - 3.1.3-1
+- Upgrade to the latest upstream version (security fixes and enhancements, BZ 707772)
+- Move wp-content directory to /var/www/wordpress/ (BZ 522897)
+- Simplify overly detailed %%files
+
+* Sun May 01 2011 Matěj Cepl - 3.1.2-1
+- New upstream release.
+
+* Tue Apr 12 2011 Matěj Cepl - 3.1.1-1
+- 3.1.1
+
+* Wed Feb 23 2011 Jon Ciesla - 3.1-1
+- 3.1.
+
+* Mon Feb 07 2011 Fedora Release Engineering - 3.0.4-3
+- Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild
+
+* Mon Jan 03 2011 Jon Ciesla - 3.0.4-2
+- Obsoletes wordpress-mu, deprecated by upstream as of 3.0.x.
+
+* Mon Jan 03 2011 Jon Ciesla - 3.0.4-1
+- 3.0.4. Security fixes, BZ 666782.
+
+* Thu Dec 23 2010 Jon Ciesla - 3.0.3-2
+- Change Requires from httpd to webserver, BZ 523480.
+- Patch for Hello Dolly lyrics, BZ 663966.
+
+* Fri Dec 10 2010 Jon Ciesla - 3.0.3-1
+- 3.0.3. Security fixes, BZ 659319.
+
+* Fri Dec 10 2010 Jon Ciesla - 3.0.2-1
+- 3.0.2. Security fixes, BZ 659319.
+
+* Mon Aug 09 2010 Jon Ciesla - 3.0.1-1
+- 3.0.1.
+
+* Mon Jul 12 2010 Jon Ciesla - 2.8.6-3
+- Remove bundled php-gettext and php-simplepie,
+- require and link to system versions, BZ 544720.
+
+* Mon Nov 16 2009 Adrian Reber - 2.8.6-2
+- updated to 2.8.6 (Security Release)
+
+* Wed Oct 21 2009 Adrian Reber - 2.8.5-1
+- updated to 2.8.5 (Hardening Release)
+
* Sun Aug 30 2009 Adrian Reber - 2.8.4-1
- updated to 2.8.4 (security fixes were already available with 2.8.3-2)