[wp-trac] [WordPress Trac] #58958: WordPress gives false reports of insecure PHP still maintained by the OS.

WordPress Trac noreply at wordpress.org
Wed Aug 2 09:44:18 UTC 2023


#58958: WordPress gives false reports of insecure PHP still maintained by the OS.
--------------------------+-----------------------------
 Reporter:  detechno      |      Owner:  (none)
     Type:  defect (bug)  |     Status:  new
 Priority:  normal        |  Milestone:  Awaiting Review
Component:  General       |    Version:
 Severity:  normal        |   Keywords:
  Focuses:                |
--------------------------+-----------------------------
 Commonly an OS (like Ubuntu, Debian, RedHat) will backport security fixes
 to a php version which is otherwise not maintained by PHP upstream.

 Wordpress ignores this fact and asserts that it does not receive security
 updates which is wrong. Instead WordPress must also write about this
 assertion -- that it's assuming the PHP that it's using is upstream PHP.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/58958>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list