In conjunction with many other plugin developers, we have released an update to All in One SEO Pack today which patches a security vulnerability within our plugin. This vulnerability affects only users who have activated the File Editor module in All in One SEO Pack. Our standard guidance is to leave this module deactivated and only activate it as and when you need to make changes to your .htaccess and robots.txt files.
You can read more information regarding this Cross-site Scripting (XSS) and the plugins affected on the Sucuri blog here.
In addition to patching this vulnerability, this release also includes changes the plugin for Taxonomy Term Splitting so that the plugin is compatible with WordPress version 4.2 which is due out very soon.
Our thanks go to Joost de Valk for identifying this vulnerability.