[wp-trac] Re: [WordPress Trac] #6871: Plugins without headers don't show in the plugins page, keeping some exploits hidden

WordPress Trac wp-trac at lists.automattic.com
Tue Jul 15 22:15:00 GMT 2008


#6871: Plugins without headers don't show in the plugins page, keeping some
exploits hidden
-----------------------------------------------------+----------------------
 Reporter:  guillep2k                                |        Owner:  anonymous
     Type:  defect                                   |       Status:  new      
 Priority:  high                                     |    Milestone:  2.9      
Component:  Security                                 |      Version:  2.5      
 Severity:  critical                                 |   Resolution:           
 Keywords:  exploit security has-patch dev-feedback  |  
-----------------------------------------------------+----------------------
Comment (by guillep2k):

 I wonder if this bug is still current as of version 2.6. The
 validate_plugin() function now calls validate_file(), which should cover
 the most sensitive aspect of the issue.

-- 
Ticket URL: <http://trac.wordpress.org/ticket/6871#comment:15>
WordPress Trac <http://trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list