[wp-trac] [WordPress Trac] #60704: Lack of Rate Limiting

WordPress Trac noreply at wordpress.org
Wed Mar 6 07:06:30 UTC 2024


#60704: Lack of Rate Limiting
--------------------------+----------------------
 Reporter:  rakeshchavan  |       Owner:  (none)
     Type:  enhancement   |      Status:  closed
 Priority:  normal        |   Milestone:
Component:  Security      |     Version:
 Severity:  normal        |  Resolution:  invalid
 Keywords:                |     Focuses:
--------------------------+----------------------
Changes (by swissspidy):

 * status:  new => closed
 * focuses:  accessibility, administration, rest-api, performance, coding-
     standards =>
 * type:  defect (bug) => enhancement
 * component:  General => Security
 * version:  6.4.3 =>
 * milestone:  Awaiting Review =>
 * resolution:   => invalid


Comment:

 Hi there and welcome to WordPress Trac

 Unfortunately your request is not really specific or actionable, as you
 just pasted the description of [https://owasp.org/API-
 Security/editions/2019/en/0xa4-lack-of-resources-and-rate-limiting/ OWASP
 API Security Top 10
 API4:2019] without checking if and how it applies to WordPress.

 The example page you shared is a restricted page for administrators to add
 new users, not really an API that needs rate limiting.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/60704#comment:1>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list