[wp-trac] [WordPress Trac] #38855: REST API: Turn off unauthed comment write by default

WordPress Trac noreply at wordpress.org
Fri Nov 18 22:11:13 UTC 2016


#38855: REST API: Turn off unauthed comment write by default
----------------------------+------------------
 Reporter:  helen           |       Owner:
     Type:  task (blessed)  |      Status:  new
 Priority:  high            |   Milestone:  4.7
Component:  REST API        |     Version:
 Severity:  major           |  Resolution:
 Keywords:                  |     Focuses:
----------------------------+------------------

Comment (by rachelbaker):

 In [attachment:38855.diff] I added a filter named
 `rest_allow_anonymous_comments` that defaults to `false` to enable opening
 the endpoint up to anyone/everyone.

 The patch causes many of our unit tests to fail, so they will need to
 updated/adjusted as needed.

 I wanted to get this up before I had to step away for baby pickup.

--
Ticket URL: <https://core.trac.wordpress.org/ticket/38855#comment:5>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list