[wp-trac] [WordPress Trac] #39309: Secure WordPress Against Infrastructure Attacks

WordPress Trac noreply at wordpress.org
Mon Feb 5 17:20:11 UTC 2018


#39309: Secure WordPress Against Infrastructure Attacks
------------------------------------------+-----------------------
 Reporter:  paragoninitiativeenterprises  |       Owner:
     Type:  enhancement                   |      Status:  reopened
 Priority:  normal                        |   Milestone:
Component:  Upgrade/Install               |     Version:  4.8
 Severity:  critical                      |  Resolution:
 Keywords:  has-patch                     |     Focuses:
------------------------------------------+-----------------------
Changes (by paragoninitiativeenterprises):

 * severity:  normal => critical


Comment:

 It's been over a year. Nobody from the WordPress security team has
 expressed any indication that this will ever be fixed.

 It's been total radio silence outside of this ticket (which is mostly me
 reminding folks that security is kind of important). There has been no
 backchannel discussion. There has been no steps forward.

 Silence and stagnation.

 I'm upgrading the severity to critical in a last-ditch effort to get
 eyeballs on this ticket. It's probably an exercise in futility, because as
 demonstrated by the timescale **even when the patches have been provided**
 (and I can't exactly review/critique my own patches for consideration of
 inclusion in the WordPress core, one of the core developers has to do
 that!), this isn't a priority for WordPress.

 Please show me something more than lip service, for a change.

--
Ticket URL: <https://core.trac.wordpress.org/ticket/39309#comment:28>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list