[wp-trac] [WordPress Trac] #28424: XML-RPC endpoint doesn't enforce the admin scheme

WordPress Trac noreply at wordpress.org
Thu Jun 5 15:24:12 UTC 2014


#28424: XML-RPC endpoint doesn't enforce the admin scheme
--------------------------+------------------------------
 Reporter:  johnbillion   |       Owner:
     Type:  defect (bug)  |      Status:  new
 Priority:  normal        |   Milestone:  Awaiting Review
Component:  Security      |     Version:
 Severity:  normal        |  Resolution:
 Keywords:                |     Focuses:  administration
--------------------------+------------------------------

Comment (by nacin):

 Most clients have users which configure the endpoint directly, bypassing
 discovery. But unfortunately we may need to live with this one. Doing this
 could easily break clients that don't perfectly obey a 307 redirect
 (probably most).

--
Ticket URL: <https://core.trac.wordpress.org/ticket/28424#comment:3>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list