[wp-trac] [WordPress Trac] #43936: Settings: Warn when open registration and new user default is privileged

WordPress Trac noreply at wordpress.org
Sat Jan 27 11:11:11 UTC 2024


#43936: Settings: Warn when open registration and new user default is privileged
-----------------------------+-----------------------------
 Reporter:  kraftbj          |       Owner:  SergeyBiryukov
     Type:  feature request  |      Status:  reviewing
 Priority:  normal           |   Milestone:  Future Release
Component:  Security         |     Version:
 Severity:  major            |  Resolution:
 Keywords:  has-patch        |     Focuses:  administration
-----------------------------+-----------------------------

Comment (by audrasjb):

 Thanks for the PR! I added some change requests concerning various
 docblocks.
 Also, I'm wondering if this sentence should be rewritten in a more
 inclusive way:
 > The combination of open registration and the default user role is
 acceptable.

 Indeed, a non-standard combination may be acceptable on some specific
 installation, so this formulation may not be very inclusive.

 I'd suggest the following:
 > The combination of open registration setting and the default user role
 may lead to security issues.

 What do you think?

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/43936#comment:36>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list