Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Yes, thank you. I do get all that.

But, due to how the GP seemed to conflate Wordpress, and "everything else" I wondered what was the basis for his comment. I'm pretty clear on the security of WP itself.

> Some plugin developers/maintainers are incredibly diligent and helpful, but I've also been threatened with legal action (more than once) when I've disclosed some really amateur security issues.

Most WP plugins are terrible from a security perspective, and I've found the quickest method to resolution is to send a patch to the devs, solving the problem for them and me.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: