[wp-trac] [WordPress Trac] #53784: Limiting user enumeration through the REST API

WordPress Trac noreply at wordpress.org
Wed Sep 8 12:48:35 UTC 2021


#53784: Limiting user enumeration through the REST API
-------------------------------------------------+-------------------------
 Reporter:  ehtis                                |       Owner:  (none)
     Type:  defect (bug)                         |      Status:  assigned
 Priority:  normal                               |   Milestone:  Future
                                                 |  Release
Component:  REST API                             |     Version:
 Severity:  normal                               |  Resolution:
 Keywords:  has-patch has-unit-tests has-        |     Focuses:  rest-api,
  screenshots                                    |  privacy
-------------------------------------------------+-------------------------

Comment (by audrasjb):

 Thank for working on this @fictiont !
 The PR looks good to me, I'm only wondering if the long comment above the
 change is really needed.
 I'd prefer to add a hook to filter `$allowed_columns` and to use it to
 document properly the default behavior.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/53784#comment:6>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list