[wp-trac] [WordPress Trac] #61332: Post via email - Password field default value trips Google Chrome warning

WordPress Trac noreply at wordpress.org
Thu May 30 20:33:44 UTC 2024


#61332: Post via email - Password field default value trips Google Chrome warning
----------------------------+-----------------------------
 Reporter:  adamkheckler    |      Owner:  (none)
     Type:  enhancement     |     Status:  new
 Priority:  normal          |  Milestone:  Awaiting Review
Component:  Administration  |    Version:  6.5.3
 Severity:  normal          |   Keywords:
  Focuses:                  |
----------------------------+-----------------------------
 TLDR: The default "Post via email" password is simply "password", which
 can trigger a scary-looking popup in Google Chrome.

 To reproduce the issue:

 1. In Chrome, go to "chrome://settings/security".
 2. Toggle on the "Warn you if a password was compromised in a data breach"
 setting.
 3. Spin up a WordPress test site.
 4. In wp-admin, go to Settings > Writing.
 5. Click "Save Changes". No need to change any actual settings.
 6. Observe the attached popup from Chrome.

 I believe Chrome thinks I have actually chosen the password "password" and
 warning me about it, which makes sense. The problem is that this triggers
 even when I've simply left the "Post via email" settings on their
 defaults, and only changed the default post category or whatever.

 I'm not sure if WP core can do anything about this, but it seemed worth
 mentioning.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/61332>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list