[wp-trac] [WordPress Trac] #48850: Plugins Screen: introduce "Automatic updates" column / option

WordPress Trac noreply at wordpress.org
Fri Feb 7 03:49:19 UTC 2020


#48850: Plugins Screen: introduce "Automatic updates" column / option
-------------------------------------+-------------------------------------
 Reporter:  jeherve                  |       Owner:  audrasjb
     Type:  feature request          |      Status:  accepted
 Priority:  normal                   |   Milestone:  5.4
Component:  Plugins                  |     Version:  3.7
 Severity:  normal                   |  Resolution:
 Keywords:  has-patch needs-testing  |     Focuses:  administration,
  has-screenshots dev-feedback       |  multisite
  needs-dev-note needs-design        |
-------------------------------------+-------------------------------------

Comment (by SergeyBiryukov):

 Replying to [comment:90 peterwilsoncc]:
 > To prevent `malicious-plugin` from messing what's offerer to  `good-
 honest-plugins`, do we need to use PHP Reflections to limit filters
 running on the the plugin to the plugin itself. This is super complex I
 know but keep in mind the offered file can be changed from wp.org to
 malicious.org via filters. This is perhaps a topic for another time.

 That sounds like it would apply to core updates too. Basically, any
 installed plugin can could do pretty much anything to the site and its
 database, even without messing with another plugin's updates.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/48850#comment:96>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list