Cross-site request forgery (CSRF) vulnerability in wp-admin/index.php in WordPress 3.4.2 allows remote attackers to hijack the authentication of administrators for requests that modify an RSS URL via a dashboard_incoming_links edit action.
https://bugzilla.redhat.com/show_bug.cgi?id=860261
https://bugs.gentoo.org/show_bug.cgi?id=436198