I just had a couple of wordpress blogs hacked. One with WP 2.8 and the other with WP 2.3. I'm kind of lazy about keeping Wordpress updated.
It's good practice to keep wordpress updated so that you have the latest security fixes.
Download Wordpress 2.8.4 here: WordPress › Download