No, this vulnerability hasn’t been fixed yet. It seems that even the recently released 3.5 has a path disclosure vulnerability.
However, seems only Windows falls victim, so if your blog/site is hosted on Linux/Unix, you should be out of the crosshairs.