[wp-trac] Re: [WordPress Trac] #6871: Plugins without headers don't
show in the plugins page, keeping some exploits hidden
WordPress Trac
wp-trac at lists.automattic.com
Wed Jul 30 03:22:32 GMT 2008
#6871: Plugins without headers don't show in the plugins page, keeping some
exploits hidden
-------------------------------------------------------------------+--------
Reporter: guillep2k | Owner: guillep2k
Type: defect | Status: reopened
Priority: high | Milestone: 2.6.1
Component: Security | Version: 2.6
Severity: critical | Resolution:
Keywords: exploit security has-patch dev-feedback tested commit |
-------------------------------------------------------------------+--------
Changes (by xknown):
* status: closed => reopened
* resolution: fixed =>
Comment:
There is a small XSS issue when showing plugin's name -- it's better to
avoid any vector attack.
--
Ticket URL: <http://trac.wordpress.org/ticket/6871#comment:33>
WordPress Trac <http://trac.wordpress.org/>
WordPress blogging software
More information about the wp-trac
mailing list