Quantcast
Channel: Plugin Vulnerabilities
Viewing all articles
Browse latest Browse all 200

WordPress Lacks Method to Verify That Plugin Is Truly a First-Party (Canonical) Plugin

$
0
0

First-party WordPress plugins are not a new idea. Here is a post about the head of WordPress, Matt Mullenweg, talking about them, referring to them as canonical plugins, in 2009. And doing it again in 2022. Despite that, there still isn’t a clear indication or verification method that plugins are truly coming from WordPress. Or even consistent labeling of those plugins. You probably wouldn’t guess the plugin Two-Factor is from WordPress as it listed as being by “Plugin Contributors”:

[Read more]


Viewing all articles
Browse latest Browse all 200

Trending Articles